CVE-2026-29067Disclosure(zitadel / zitadel)

LOWCVSS 9.3 · CRITICAL

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Patch zitadel zitadel systems immediately

Recommended action window: Monitor and triage in normal cycle

NVD description

ZITADEL is an open source identity management platform. From version 4.0.0-rc.1 to 4.7.0, a potential vulnerability exists in ZITADEL's password reset mechanism in login V2. ZITADEL utilizes the Forwarded or X-Forwarded-Host header from incoming requests to construct the URL for the password reset confirmation link. This link, containing a secret code, is then emailed to the user. This issue has been patched in version 4.7.1.

0.5/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-601

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

AVAILABLE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • zitadel

Threat summary

  • Patch or workaround signal is available
  • 5 mentions across 2 observed days
  • Momentum state: stable

What's happening

  • Patch or workaround mentioned in 1 signal
  • Technical details provided in 5 signals
  • Disclosure: 4 classified signals
  • Peaked 1d ago at 4 mentions (2026-03-07); latest day: 1
  • 5 total mentions across 2 days

Affected systems

Vendors
Products
zitadel

Deep dive

Activity timeline5 mentions / 2d
01234Mentions · 2026-03-07: 4Mentions · 2026-03-12: 1Patch / Workaround · 2026-03-07: 1Technical Details · 2026-03-07: 4Technical Details · 2026-03-12: 103-0703-12
Signal classification2 categories
Disclosure
480.0%
Patch
120.0%
Referenced assets5 URLs
Classification over time
DateTotalLabels
2026-03-074
Disclosure3Patch1
2026-03-121
Disclosure1
Full discourse5 posts
  • Assaf Kipnis@KTLYST_labs
    Patch

    Critical ZITADEL password reset bypass (CVE-2026-29067) - forged Forwarded header hijacks resets. Patch if you're on 4.0-4.7. Two Backstage vulns leaking secrets + path traversal. Linux kernel scheduler corruption. Hive-linked Debian DoS. http://ktlystlabs.com/signals

    Post summary

    The post announces a critical ZITADEL password reset bypass (CVE-2026-29067), urges users of versions 4.0–4.7 to apply the patch, and briefly references other related vulnerabilities, but no active exploitation or PoC is reported.

    0001036
    8 followersView on X
  • CRAC Learning - Tech@cracbot
    Disclosure

    CVE-2026-29067 (CVSS:8.1, HIGH) is Analyzed. ZITADEL is an open source identity management platform. From version 4.0.0-rc.1 to 4.7.0, a potential vulnerability exis..https://nvd.nist.gov/vuln/detail/CVE-2026-29067 #cybersecurityawareness #cybersecurity #CVE #infosec #hacker #nvd #mitre

    Post summary

    The post announces CVE-2026-29067 in ZITADEL 4.x with a high CVSS score and affected versions, but it does not provide any PoC, exploit code, active exploitation evidence, or patch information.

    0000027
    172 followersView on X
  • CVE@CVEnew
    Disclosure

    CVE-2026-29067 ZITADEL is an open source identity management platform. From version 4.0.0-rc.1 to 4.7.0, a potential vulnerability exists in ZITADEL's password reset mechanism in lo… https://www.cve.org/CVERecord?id=CVE-2026-29067

    Post summary

    The statement announces CVE‑2026‑29067 in ZITADEL, noting affected versions and a password‑reset flaw, but gives no PoC, exploit, or mitigation details.

    00000108
    56.6K followersView on X
  • Vulmon Vulnerability Feed@VulmonFeeds
    Disclosure

    CVE-2026-29067 Password Reset Mechanism Vulnerability in ZITADEL Identity Management Platform 4.0.0-rc.1-4.7.0 https://vulmon.com/vulnerabilitydetails?qid=CVE-2026-29067

    Post summary

    A password reset mechanism flaw has been identified in ZITADEL Identity Management Platform versions 4.0.0‑rc.1 to 4.7.0 (CVE‑2026‑29067).

    0000040
    4.0K followersView on X
  • The Hacker Wire@TheHackerWire
    Disclosure

    🟠 CVE-2026-29067 - High ZITADEL is an open source identity management platform. From version 4.0.0-rc.1 to 4.7.0, a potential vulnerability exists in ZITADEL's password reset mechanism in login V2. ZITADEL utilizes ... https://www.thehackerwire.com/vulnerability/CVE-2026-29067/ https://t.co/hKeZCIdStQ

    Post summary

    ZITADEL's password reset mechanism is reported to have a high‑severity vulnerability affecting versions 4.0.0‑rc.1 through 4.7.0, with no PoC or exploit details provided.

    0000039
    128 followersView on X
CPE platform detail1 entries

1 of 1 entries

PartVendorProductVersionTarget SWTarget HW
Appzitadelzitadel---

Explore more