{"api_version":"v1","generated_at":"2026-10-09T13:45:00+00:00","product":{"cve_count":71,"evidence_gap_note":"Official registry publication history is linked, but a publisher support or retirement boundary has not been established.","id":"security:cve-zitadel-zitadel-24392cde9a95","lifecycle_state":"evidence_gap","linked_lifecycle_url":"https://lifecycle.blacktree.nl/libraries/nuget/zitadel","name":"zitadel","next_cursor":"djE6NTA","observations":[{"affected":"zitadel: < 4.16.2, < 3.4.14","affected_versions_present":true,"cve_id":"CVE-2026-105215","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-105215","fixed":"zitadel: 4.16.2, 3.4.14","last_modified":"2026-10-05T13:28:36.853Z","patch_url":"https://github.com/zitadel/zitadel/security/advisories/GHSA-738m-7888-jfv8","primary_source":"","published":"2026-10-04T13:10:07.389Z"},{"affected":"zitadel: < 4.16.2","affected_versions_present":true,"cve_id":"CVE-2026-105214","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-105214","fixed":"zitadel: 4.16.2","last_modified":"2026-10-05T20:29:06.887Z","patch_url":"https://github.com/zitadel/zitadel/security/advisories/GHSA-93hm-8q29-c8cr","primary_source":"","published":"2026-10-04T13:10:06.642Z"},{"affected":"zitadel: < 4.17.1","affected_versions_present":true,"cve_id":"CVE-2026-105213","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-105213","fixed":"zitadel: 4.17.1","last_modified":"2026-10-05T15:42:12.210Z","patch_url":"https://github.com/zitadel/zitadel/security/advisories/GHSA-558c-v5wc-9w4q","primary_source":"","published":"2026-10-04T13:10:05.815Z"},{"affected":"zitadel: < 4.16.2, < 3.4.14","affected_versions_present":true,"cve_id":"CVE-2026-105212","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-105212","fixed":"zitadel: 4.16.2, 3.4.14","last_modified":"2026-10-05T14:55:02.045Z","patch_url":"https://github.com/zitadel/zitadel/security/advisories/GHSA-45f2-5q3r-xgg6","primary_source":"","published":"2026-10-04T13:10:05.215Z"},{"affected":"zitadel: < 4.17.1","affected_versions_present":true,"cve_id":"CVE-2026-105211","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-105211","fixed":"zitadel: 4.17.1","last_modified":"2026-10-05T14:06:56.950Z","patch_url":"https://github.com/zitadel/zitadel/security/advisories/GHSA-3gwm-5wx8-4gm6","primary_source":"","published":"2026-10-04T13:10:04.626Z"},{"affected":"zitadel: < 4.17.1, < 3.4.15","affected_versions_present":true,"cve_id":"CVE-2026-105210","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-105210","fixed":"zitadel: 4.17.1, 3.4.15","last_modified":"2026-10-05T13:29:17.102Z","patch_url":"https://github.com/zitadel/zitadel/security/advisories/GHSA-72q5-mv5c-vxv4","primary_source":"","published":"2026-10-04T13:10:03.949Z"},{"affected":"zitadel: < 4.17.1, < 3.4.15","affected_versions_present":true,"cve_id":"CVE-2026-105209","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-105209","fixed":"zitadel: 4.17.1, 3.4.15","last_modified":"2026-10-05T20:29:16.287Z","patch_url":"https://github.com/zitadel/zitadel/security/advisories/GHSA-pq2q-2c6r-75c4","primary_source":"","published":"2026-10-04T13:10:03.314Z"},{"affected":"zitadel: < 4.17.3, \u2264 4.19.4","affected_versions_present":true,"cve_id":"CVE-2026-105208","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-105208","fixed":"zitadel: 4.17.3","last_modified":"2026-10-05T15:43:47.569Z","patch_url":"https://github.com/zitadel/zitadel/security/advisories/GHSA-jh3m-cr2x-qp88","primary_source":"","published":"2026-10-04T13:10:02.664Z"},{"affected":"zitadel: < 4.17.3, \u2264 4.19.4","affected_versions_present":true,"cve_id":"CVE-2026-105207","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-105207","fixed":"zitadel: 4.17.3","last_modified":"2026-10-06T21:58:40.367Z","patch_url":"https://github.com/zitadel/zitadel/security/advisories/GHSA-g8gj-gq47-xgf4","primary_source":"","published":"2026-10-04T13:10:02.024Z"},{"affected":"zitadel: < 4.17.3, \u2264 4.19.4","affected_versions_present":true,"cve_id":"CVE-2026-105206","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-105206","fixed":"zitadel: 4.17.3","last_modified":"2026-10-05T14:14:18.300Z","patch_url":"https://github.com/zitadel/zitadel/security/advisories/GHSA-j344-gqv4-84ff","primary_source":"","published":"2026-10-04T13:10:01.420Z"},{"affected":"zitadel: >= 4.0.0, < 4.16.1","affected_versions_present":true,"cve_id":"CVE-2026-85056","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-85056","fixed":"4.16.1.","last_modified":"2026-09-28T14:56:04.082Z","patch_url":"https://github.com/zitadel/zitadel/security/advisories/GHSA-9993-rfwp-rhwf","primary_source":"","published":"2026-09-24T17:34:13.328Z"},{"affected":"zitadel: >= 3.0.0, < 3.4.13, >= 4.0.0, < 4.16.1","affected_versions_present":true,"cve_id":"CVE-2026-85057","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-85057","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-10-05T15:32:54.542Z","patch_url":"","primary_source":"","published":"2026-09-24T17:31:19.929Z"},{"affected":"zitadel: < 4.16.0","affected_versions_present":true,"cve_id":"CVE-2026-76081","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-76081","fixed":"4.16.0.","last_modified":"2026-09-15T19:21:51.412Z","patch_url":"https://github.com/zitadel/zitadel/security/advisories/GHSA-v859-c572-qh5p","primary_source":"","published":"2026-09-14T21:30:47.819Z"},{"affected":">= 2.43.0, <= 2.71.19; >= 3.0.0-rc.1, < 3.4.11; >= 4.0.0-rc.1, < 4.15.1","affected_versions_present":true,"cve_id":"CVE-2026-54693","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-54693","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-07-29T17:54:41.535Z","patch_url":"","primary_source":"","published":"2026-07-29T16:50:39.957Z"},{"affected":"< 4.15.3","affected_versions_present":true,"cve_id":"CVE-2026-56668","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-56668","fixed":"4.15.3.","last_modified":"2026-07-14T13:40:35.609Z","patch_url":"https://github.com/zitadel/zitadel/security/advisories/GHSA-vrh8-c9cm-wh8v","primary_source":"","published":"2026-07-10T17:46:25.937Z"},{"affected":"< 4.15.3","affected_versions_present":true,"cve_id":"CVE-2026-56666","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-56666","fixed":"4.15.3.","last_modified":"2026-07-13T18:09:47.186Z","patch_url":"https://github.com/zitadel/zitadel/security/advisories/GHSA-992q-9gwp-7r79","primary_source":"","published":"2026-07-10T17:37:37.137Z"},{"affected":"< 4.15.3","affected_versions_present":true,"cve_id":"CVE-2026-56667","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-56667","fixed":"4.15.3.","last_modified":"2026-07-10T20:58:28.907Z","patch_url":"https://github.com/zitadel/zitadel/security/advisories/GHSA-5wcj-9wj4-j65h","primary_source":"","published":"2026-07-10T17:25:46.882Z"},{"affected":">= 4.0.0-rc.1, < 4.15.2; < 3.4.12","affected_versions_present":true,"cve_id":"CVE-2026-56665","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-56665","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-07-10T18:17:48.365Z","patch_url":"","primary_source":"","published":"2026-07-10T17:22:46.079Z"},{"affected":">= 4.0.0-rc.1, < 4.15.2; < 3.4.12","affected_versions_present":true,"cve_id":"CVE-2026-56664","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-56664","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-07-10T18:01:25.422Z","patch_url":"","primary_source":"","published":"2026-07-10T17:21:22.653Z"},{"affected":">= 4.0.0-rc.1, < 4.15.2; < 3.4.12","affected_versions_present":true,"cve_id":"CVE-2026-55672","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-55672","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-07-10T18:38:10.755Z","patch_url":"","primary_source":"","published":"2026-07-10T17:19:05.266Z"},{"affected":"< 4.15.2","affected_versions_present":true,"cve_id":"CVE-2026-55671","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-55671","fixed":"4.15.2.","last_modified":"2026-07-14T02:04:22.076Z","patch_url":"https://github.com/zitadel/zitadel/security/advisories/GHSA-29jh-8cfq-rr8x","primary_source":"","published":"2026-07-10T17:17:50.095Z"},{"affected":"< 4.15.2","affected_versions_present":true,"cve_id":"CVE-2026-55670","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-55670","fixed":"4.15.2.","last_modified":"2026-07-10T20:58:36.084Z","patch_url":"https://github.com/zitadel/zitadel/security/advisories/GHSA-6x8v-2fq5-2229","primary_source":"","published":"2026-07-10T17:15:44.783Z"},{"affected":">= 4.0.0-rc.1, < 4.15.2; < 3.4.12","affected_versions_present":true,"cve_id":"CVE-2026-55669","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-55669","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-07-10T18:16:52.558Z","patch_url":"","primary_source":"","published":"2026-07-10T16:58:46.140Z"},{"affected":">= 2.71.11, < 3.4.10; >= 4.0.0, < 4.15.0","affected_versions_present":true,"cve_id":"CVE-2026-44671","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-44671","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2026-05-15T18:05:06.108Z","patch_url":"https://github.com/zitadel/zitadel/security/advisories/GHSA-rxvx-hhpj-q6px","primary_source":"","published":"2026-05-14T21:13:03.077Z"},{"affected":">= 4.0.0-rc.1, < 4.12.3; >= 3.0.0-rc.1, < 3.4.9; < 1.80.0-v2.20.0.20260317120401-d90285929ca0","affected_versions_present":true,"cve_id":"CVE-2026-33132","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-33132","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2026-03-20T19:31:30.207Z","patch_url":"https://github.com/zitadel/zitadel/security/advisories/GHSA-g2pf-ww5m-2r9m","primary_source":"","published":"2026-03-20T10:21:19.373Z"},{"affected":">= 4.0.0, < 4.12.2; < 3.4.8","affected_versions_present":true,"cve_id":"CVE-2026-32132","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-32132","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-03-12T16:17:54.535Z","patch_url":"","primary_source":"","published":"2026-03-11T21:40:07.055Z"},{"affected":">= 4.0.0, < 4.12.2; < 3.4.8","affected_versions_present":true,"cve_id":"CVE-2026-32131","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-32131","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-03-12T16:18:01.726Z","patch_url":"","primary_source":"","published":"2026-03-11T21:38:51.942Z"},{"affected":">= 4.0.0, < 4.12.2; >= 2.68.0, < 3.4.8","affected_versions_present":true,"cve_id":"CVE-2026-32130","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-32130","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-03-12T16:18:08.397Z","patch_url":"","primary_source":"","published":"2026-03-11T21:37:07.369Z"},{"affected":">= 4.0.0-rc.1, < 4.7.1","affected_versions_present":true,"cve_id":"CVE-2026-29067","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-29067","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2026-03-09T18:27:24.567Z","patch_url":"https://github.com/zitadel/zitadel/security/advisories/GHSA-pfrf-9r5f-73f5","primary_source":"","published":"2026-03-07T15:12:26.345Z"},{"affected":">= 4.0.0, < 4.12.1","affected_versions_present":true,"cve_id":"CVE-2026-29193","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-29193","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2026-03-09T18:27:32.981Z","patch_url":"https://github.com/zitadel/zitadel/security/advisories/GHSA-25rw-g6ff-fmg8","primary_source":"","published":"2026-03-07T15:11:06.415Z"},{"affected":">= 4.0.0, < 4.12.0","affected_versions_present":true,"cve_id":"CVE-2026-29192","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-29192","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2026-03-09T20:44:25.436Z","patch_url":"https://github.com/zitadel/zitadel/security/advisories/GHSA-6rx5-m2rc-hmf7","primary_source":"","published":"2026-03-07T15:09:53.454Z"},{"affected":">= 4.0.0, < 4.12.0","affected_versions_present":true,"cve_id":"CVE-2026-29191","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-29191","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2026-03-09T20:44:25.583Z","patch_url":"https://github.com/zitadel/zitadel/security/advisories/GHSA-pr34-2v5x-6qjq","primary_source":"","published":"2026-03-07T15:07:02.706Z"},{"affected":">= 4.0.0, < 4.11.0; < 3.4.7","affected_versions_present":true,"cve_id":"CVE-2026-27946","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-27946","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-02-26T16:29:22.712Z","patch_url":"","primary_source":"","published":"2026-02-26T00:34:56.913Z"},{"affected":">= 2.59.0, < 4.11.1","affected_versions_present":true,"cve_id":"CVE-2026-27945","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-27945","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-02-26T16:51:23.606Z","patch_url":"","primary_source":"","published":"2026-02-26T00:29:58.157Z"},{"affected":">= 4.0.0, < 4.11.0; >= 3.0.0, < 3.4.7; >= 2.31.0, <= 2.71.19","affected_versions_present":true,"cve_id":"CVE-2026-27840","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-27840","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-02-26T17:00:29.815Z","patch_url":"","primary_source":"","published":"2026-02-26T00:27:08.933Z"},{"affected":">= 4.0.0, < 4.9.1; < 3.4.6","affected_versions_present":true,"cve_id":"CVE-2026-23511","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-23511","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2026-01-15T19:56:24.164Z","patch_url":"https://github.com/zitadel/zitadel/commit/b85ab69e4679b0268e2b0e9b4cd04e934af10dd2","primary_source":"","published":"2026-01-15T19:09:06.154Z"},{"affected":"< 1.80.0-v2.20.0.20251210; >= 2.44.0, < 3.4.5; >= 4.0.0-rc.1, < 4.7.2","affected_versions_present":true,"cve_id":"CVE-2025-67717","cve_url":"https://cve.blacktree.nl/cve/CVE-2025-67717","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2025-12-11T18:43:08.454Z","patch_url":"https://github.com/zitadel/zitadel/security/advisories/GHSA-f4cf-9rvr-2rcx","primary_source":"","published":"2025-12-11T00:30:19.192Z"},{"affected":"< 1.80.0-v2.20.0.20251208091519-4c879b47334e; >= 1.83.4, <= 1.87.5; >= 4.0.0-rc.1, < 4.7.1","affected_versions_present":true,"cve_id":"CVE-2025-67495","cve_url":"https://cve.blacktree.nl/cve/CVE-2025-67495","fixed":"4.7.1.","last_modified":"2025-12-10T16:50:23.393Z","patch_url":"https://github.com/zitadel/zitadel/commit/4c879b47334e01d4fcab921ac1b44eda39acdb96","primary_source":"","published":"2025-12-09T22:38:44.327Z"},{"affected":"< 1.80.0-v2.20.0.20251208091519-4c879b47334e; >= 1.83.4, <= 1.87.5; >= 4.0.0-rc.1, < 4.7.1","affected_versions_present":true,"cve_id":"CVE-2025-67494","cve_url":"https://cve.blacktree.nl/cve/CVE-2025-67494","fixed":"4.7.1.","last_modified":"2025-12-10T16:50:30.263Z","patch_url":"https://github.com/zitadel/zitadel/commit/4c879b47334e01d4fcab921ac1b44eda39acdb96","primary_source":"","published":"2025-12-09T22:07:51.878Z"},{"affected":">= 4.0.0-rc.1, < 4.6.6; >= 3.0.0-rc.1, < 3.4.4; >= 2.50.0, < 2.71.19","affected_versions_present":true,"cve_id":"CVE-2025-64717","cve_url":"https://cve.blacktree.nl/cve/CVE-2025-64717","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2025-11-13T17:09:03.838Z","patch_url":"https://github.com/zitadel/zitadel/security/advisories/GHSA-j4g7-v4m4-77px","primary_source":"","published":"2025-11-13T15:30:51.233Z"},{"affected":">= 4.0.0-rc.1, < 4.6.3; >= 1.80.0-v2.20.0.20250414095945-f365cee73242, < 1.80.0-v2.20.0.20251105083648-8dcfff97ed52","affected_versions_present":true,"cve_id":"CVE-2025-64431","cve_url":"https://cve.blacktree.nl/cve/CVE-2025-64431","fixed":"4.6.3.","last_modified":"2025-11-07T18:29:24.551Z","patch_url":"https://github.com/zitadel/zitadel/security/advisories/GHSA-cpf4-pmr4-w6cx","primary_source":"","published":"2025-11-07T18:09:25.466Z"},{"affected":">= 4.0.0-rc.1, < 4.6.0; >= 3.0.0-rc.1, < 3.4.3; >= 2.55.0, < 2.71.18; >= 2.54.3, <= 2.54.10; >= 2.53.6, <= 2.53.9","affected_versions_present":true,"cve_id":"CVE-2025-64103","cve_url":"https://cve.blacktree.nl/cve/CVE-2025-64103","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2025-10-30T14:51:19.189Z","patch_url":"https://github.com/zitadel/zitadel/commit/b284f8474eed0cba531905101619e7ae7963156b","primary_source":"","published":"2025-10-29T18:43:46.934Z"},{"affected":">= 4.0.0-rc.1, < 4.6.0; >= 3.0.0-rc.1, < 3.4.3; >= 2.0.0, < 2.71.18","affected_versions_present":true,"cve_id":"CVE-2025-64102","cve_url":"https://cve.blacktree.nl/cve/CVE-2025-64102","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2025-10-30T14:53:53.184Z","patch_url":"https://github.com/zitadel/zitadel/commit/b8db8cdf9cc8ea13f461758aef12457f8b7d972a","primary_source":"","published":"2025-10-29T18:36:15.390Z"},{"affected":">= 4.0.0-rc.1, < 4.6.0; >= 3.0.0-rc.1, < 3.4.3; >= 2.0.0, < 2.71.18","affected_versions_present":true,"cve_id":"CVE-2025-64101","cve_url":"https://cve.blacktree.nl/cve/CVE-2025-64101","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2025-10-29T19:35:39.237Z","patch_url":"https://github.com/zitadel/zitadel/commit/72a5c33e6ac302b978d564bd049f9364f5a989b1","primary_source":"","published":"2025-10-29T18:30:14.999Z"},{"affected":"< 2.71.15; >= 3.0.0, < 3.4.0; >= 4.0.0, < 4.0.3","affected_versions_present":true,"cve_id":"CVE-2025-57770","cve_url":"https://cve.blacktree.nl/cve/CVE-2025-57770","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2025-08-22T20:05:08.582Z","patch_url":"https://github.com/zitadel/zitadel/commit/7abe759c95cb360524d88b51744d03cbb6e4dcdb","primary_source":"","published":"2025-08-22T16:50:35.002Z"},{"affected":"= 4.0.0-rc.1; >= 3.0.0, < 3.3.1; >= 2.53.0, < 2.70.14; >= 2.71.0, < 2.71.13","affected_versions_present":true,"cve_id":"CVE-2025-53895","cve_url":"https://cve.blacktree.nl/cve/CVE-2025-53895","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2025-07-15T17:19:29.391Z","patch_url":"","primary_source":"","published":"2025-07-15T16:39:00.635Z"},{"affected":"< 2.70.12; >= 2.71.0, <= 2.71.10; >= 3.0.0-rc1, < 3.2.2","affected_versions_present":true,"cve_id":"CVE-2025-48936","cve_url":"https://cve.blacktree.nl/cve/CVE-2025-48936","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2025-05-30T13:06:54.297Z","patch_url":"https://github.com/zitadel/zitadel/security/advisories/GHSA-93m4-mfpg-c3xf","primary_source":"","published":"2025-05-30T06:30:57.792Z"},{"affected":">= 3.0.0-rc.1, < 3.0.0; < 2.70.10; >= 2.71.0, < 2.71.9","affected_versions_present":true,"cve_id":"CVE-2025-46815","cve_url":"https://cve.blacktree.nl/cve/CVE-2025-46815","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2025-05-06T18:21:14.384Z","patch_url":"https://github.com/zitadel/zitadel/commit/b1e60e7398d677f08b06fd7715227f70b7ca1162","primary_source":"","published":"2025-05-06T17:13:53.878Z"},{"affected":">= 2.62.0, < 2.63.9; >= 2.64.0-rc.1, < 2.64.6; >= 2.65.0-rc.1, < 2.65.7; >= 2.66.0-rc.1, < 2.66.16; >= 2.67.0-rc.1, < 2.67.13; >= 2.68.0-rc.1, < 2.68.9; >= 2.69.0-rc.1, < 2.69.9; >= 2.70.0-rc.1, < 2.70.8","affected_versions_present":true,"cve_id":"CVE-2025-31124","cve_url":"https://cve.blacktree.nl/cve/CVE-2025-31124","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2025-03-31T22:26:39.989Z","patch_url":"https://github.com/zitadel/zitadel/commit/14de8ecac2afafee4975ed7ac26f3ca4a2b0f82c","primary_source":"","published":"2025-03-31T19:38:12.235Z"},{"affected":">= 2.62.0, < 2.63.9; >= 2.64.0-rc.1, < 2.64.6; >= 2.65.0-rc.1, < 2.65.7; >= 2.66.0-rc.1, < 2.66.16; >= 2.67.0-rc.1, < 2.67.13; >= 2.68.0-rc.1, < 2.68.9; >= 2.69.0-rc.1, < 2.69.9; >= 2.70.0-rc.1, < 2.70.8","affected_versions_present":true,"cve_id":"CVE-2025-31123","cve_url":"https://cve.blacktree.nl/cve/CVE-2025-31123","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2025-03-31T22:38:38.383Z","patch_url":"https://github.com/zitadel/zitadel/commit/315503beabd679f2e6aec0c004f0f9d2f5b53ed3","primary_source":"","published":"2025-03-31T19:31:40.507Z"}],"source_generated_at":"2026-10-09T06:17:25.511Z","vendor":"zitadel"}}
