
🚨*CVE* CVE-2026-40166 authentik is an open-source identity provider. In versions prior to 2025.12.5 and 2026.2.0-rc1 through 2026.2.2, authenticated non-admin users with at least one OAuth… https://www.cve.org/CVERecord?id=CVE-2026-40166 ----- Traducción: CVE-2026-40166 aut… http://infoflow.cloud`
Post summary
The post highlights CVE-2026-40166, stating that authenticated non‑admin users in specified authentik versions can abuse OAuth, and links to the official CVE record.

