Rankiteo Logo
Rankiteo
Leader in Cyber Underwriting
Loading...
NEWRankiteo Cyber Underwriting Desktop - Score, price, and bind from your desktop
WindowsmacOSLinux
Download
ZITADEL

ZITADEL Vendor Cyber Rating & Cyber Score

zitadel.com

ZITADEL - Identity infrastructure, simplified for you.


ZITADEL A.I CyberSecurity Scoring

ZITADEL
Company Information
Website:https://zitadel.com
Employees number:23
Number of followers:3,084
NAICS:5112
Industry Type:Software Development
Homepage:zitadel.com
ZITADEL Risk Score (AI oriented)
Between 700 and 749
logo
ZITADELSoftware Development
Updated:
02/04/2026
745/1000
Moderate
Ba
AaaAaABaaBaBCaaCaC
Powered by our proprietary A.I cyber incident model
Insurance prefers TPRM score to calculate premium
ZITADEL Global Score (TPRM)
xxxx
logo
ZITADELSoftware Development
•••
Score locked
Instant access to detailed risk factors
Vulnerabilities
Benchmark vs. industry & size peers
Findings

ZITADEL
ZITADELModerate
Current Score
745Ba (MODERATE)
01000
2 incidents
-5 avg impact
Incident timeline with MITRE ATT&CK tactics, techniques, and mitigations.
JUNE 2026
746Before Incident
MAY 2026
745Before Incident
APRIL 2026
745Before Incident
MARCH 2026
745Before Incident
FEBRUARY 2026
745Before Incident
JANUARY 2026
749Before Incident
Vulnerability
01 Jan 2026ZITADEL
ZITADEL: 1-Click ZITADEL Vulnerability Could Allow Full System Takeover

Critical XSS Vulnerability in ZITADEL Exposes Enterprises to Account Takeovers

744After Incident
CRITICAL-5
ZIT1773052021
Critical XSS Vulnerability in ZITADEL Exposes Enterprises to Account Takeovers A severe Cross-Site Scripting (XSS) vulnerability, tracked as CVE-2026-29191 (Critical severity), has been identified in ZITADEL, an open-source identity and access management (IAM) platform. The flaw, discovered by security researcher Amit Laish of GE Vernova, resides in the platform’s /saml-post endpoint within the login V2 interface. The vulnerability affects ZITADEL versions 4.0.0 through 4.11.1 and exists in the platform’s default configuration, meaning no additional identity integrations are required for exploitation. Attackers can craft malicious links that, when clicked, execute arbitrary JavaScript in a victim’s browser, enabling silent password resets and full account takeovers. The flaw stems from insecure handling of the url and id parameters in the /saml-post endpoint, which processes SAML Identity Provider requests. The endpoint reflects user-supplied input without proper encoding, allowing attackers to inject malicious scripts. Notably, the vulnerability remains exploitable even if SAML is not configured. ZITADEL’s maintainers have released version 4.12.0, which removes the vulnerable endpoint and reworks the SAML integration architecture. Additional security measures include requiring the user’s current password for password changes, regardless of session state. Organizations unable to upgrade immediately can mitigate risk by enforcing Multi-Factor Authentication (MFA) or Passwordless login, deploying a Web Application Firewall (WAF), or blocking traffic to the vulnerable endpoint. Accounts protected by MFA or Passwordless authentication are inherently shielded from this attack vector.
INCIDENT DETAILS -
TYPE
Cross-Site Scripting (XSS)
IMPACT
Data Compromised: Account credentials, session tokensSystems Affected: ZITADEL IAM platform (versions 4.0.0 through 4.11.1)Operational Impact: Account takeovers, unauthorized access to identity management systemsBrand Reputation Impact: Potential reputational damage due to security vulnerabilityIdentity Theft Risk: High
DATA BREACH
Type Of Data Compromised: Account credentials, session tokensSensitivity Of Data: High (personally identifiable information, authentication data)Personally Identifiable Information: Yes
DECEMBER 2025
749Before Incident
NOVEMBER 2025
749Before Incident
OCTOBER 2025
749Before Incident
SEPTEMBER 2025
749Before Incident
AUGUST 2025
749Before Incident
JULY 2025
749Before Incident
MARCH 2025
750Before Incident
Vulnerability
01 Mar 2025ZITADEL
ZITADEL

ZITADEL IDOR Vulnerability (CVE-2025-27507)

748After Incident
CRITICAL-2
ZIT404030625
ZITADEL faced a critical Insecure Direct Object Reference (IDOR) vulnerability (CVE-2025-27507), threatening organizations through account takeover and configuration tampering risks. Authenticated users with low privilege were able to manipulate LDAP authentication settings, resulting in potential full account compromise and backend directory infrastructure exposure. Attackers could exploit vulnerable endpoints to reroute LDAP authentication, extract service credentials, deploy phishing content, and disable MFA controls. The exploitation was hard to detect due to minimal forensic traces, posing significant security challenges. Prompt patching and auditing were required to mitigate risks.
INCIDENT DETAILS -
TYPE
Vulnerability Exploitation
MOTIVATION
Account TakeoverConfiguration Tampering
IMPACT
LDAP authentication settingsService credentialsLDAP authentication endpointsBackend directory infrastructure
DATA BREACH
LDAP authentication settingsService credentials

Frequently Asked Questions

?
What is the current A.I Rankiteo Cyber Score for ZITADEL ?
?
What was ZITADEL's A.I Rankiteo Cyber Score in May 2026 ?
?
What was ZITADEL's A.I Rankiteo Cyber Score in April 2026 ?
?
What was ZITADEL's A.I Rankiteo Cyber Score in March 2026 ?
?
What was ZITADEL's A.I Rankiteo Cyber Score in February 2026 ?
?
What was ZITADEL's A.I Rankiteo Cyber Score in January 2026 ?
?
What was ZITADEL's A.I Rankiteo Cyber Score in December 2025 ?
?
What was ZITADEL's A.I Rankiteo Cyber Score in November 2025 ?
?
What was ZITADEL's A.I Rankiteo Cyber Score in October 2025 ?
?
What was ZITADEL's A.I Rankiteo Cyber Score in September 2025 ?
?
What was ZITADEL's A.I Rankiteo Cyber Score in August 2025 ?
?
What was ZITADEL's A.I Rankiteo Cyber Score in July 2025 ?
?
What is the average per-incident point impact on ZITADEL's A.I Rankiteo Cyber Score over the past 12 months ?
?
Where can I access detailed records of all cyber incidents associated with ZITADEL ?
?
Where can I find a summary of the A.I Rankiteo Risk Scoring methodology ?
?
Where can I view ZITADEL's profile page on Rankiteo ?
?
How accurate is the A.I Rankiteo Risk Scoring methodology ?