ZITADEL A.I CyberSecurity Scoring
ZITADEL
Company Information
Website:https://zitadel.com
Employees number:23
Number of followers:3,084
NAICS:5112
Industry Type:Software Development
Homepage:zitadel.com
ZITADEL Risk Score (AI oriented)
Between 700 and 749
ZITADELSoftware Development
Updated:
02/04/2026
02/04/2026
745/1000
Moderate
Ba
ZITADEL Global Score (TPRM)
xxxx
ZITADELSoftware Development
Score locked

ZITADELModerate
Current Score
745Ba (MODERATE)
01000
2 incidents
-5 avg impact
Incident timeline with MITRE ATT&CK tactics, techniques, and mitigations.
JUNE 2026
746
MAY 2026
745
APRIL 2026
745
MARCH 2026
745
FEBRUARY 2026
745
JANUARY 2026
749
Vulnerability
01 Jan 2026 • ZITADEL
ZITADEL: 1-Click ZITADEL Vulnerability Could Allow Full System Takeover
Critical XSS Vulnerability in ZITADEL Exposes Enterprises to Account Takeovers
744
CRITICAL-5
ZIT1773052021
Critical XSS Vulnerability in ZITADEL Exposes Enterprises to Account Takeovers
A severe Cross-Site Scripting (XSS) vulnerability, tracked as CVE-2026-29191 (Critical severity), has been identified in ZITADEL, an open-source identity and access management (IAM) platform. The flaw, discovered by security researcher Amit Laish of GE Vernova, resides in the platform’s /saml-post endpoint within the login V2 interface.
The vulnerability affects ZITADEL versions 4.0.0 through 4.11.1 and exists in the platform’s default configuration, meaning no additional identity integrations are required for exploitation. Attackers can craft malicious links that, when clicked, execute arbitrary JavaScript in a victim’s browser, enabling silent password resets and full account takeovers.
The flaw stems from insecure handling of the url and id parameters in the /saml-post endpoint, which processes SAML Identity Provider requests. The endpoint reflects user-supplied input without proper encoding, allowing attackers to inject malicious scripts. Notably, the vulnerability remains exploitable even if SAML is not configured.
ZITADEL’s maintainers have released version 4.12.0, which removes the vulnerable endpoint and reworks the SAML integration architecture. Additional security measures include requiring the user’s current password for password changes, regardless of session state.
Organizations unable to upgrade immediately can mitigate risk by enforcing Multi-Factor Authentication (MFA) or Passwordless login, deploying a Web Application Firewall (WAF), or blocking traffic to the vulnerable endpoint. Accounts protected by MFA or Passwordless authentication are inherently shielded from this attack vector.
INCIDENT DETAILS -
TYPE
IMPACT
DATA BREACH
REFERENCES
DECEMBER 2025
749
NOVEMBER 2025
749
OCTOBER 2025
749
SEPTEMBER 2025
749
AUGUST 2025
749
JULY 2025
749
MARCH 2025
750
Vulnerability
01 Mar 2025 • ZITADEL
ZITADEL
ZITADEL IDOR Vulnerability (CVE-2025-27507)
748
CRITICAL-2
ZIT404030625
ZITADEL faced a critical Insecure Direct Object Reference (IDOR) vulnerability (CVE-2025-27507), threatening organizations through account takeover and configuration tampering risks. Authenticated users with low privilege were able to manipulate LDAP authentication settings, resulting in potential full account compromise and backend directory infrastructure exposure. Attackers could exploit vulnerable endpoints to reroute LDAP authentication, extract service credentials, deploy phishing content, and disable MFA controls. The exploitation was hard to detect due to minimal forensic traces, posing significant security challenges. Prompt patching and auditing were required to mitigate risks.
INCIDENT DETAILS -
TYPE
MOTIVATION
IMPACT
DATA BREACH
REFERENCES
Frequently Asked Questions
?
What is the current A.I Rankiteo Cyber Score for ZITADEL ??
What was ZITADEL's A.I Rankiteo Cyber Score in May 2026 ??
What was ZITADEL's A.I Rankiteo Cyber Score in April 2026 ??
What was ZITADEL's A.I Rankiteo Cyber Score in March 2026 ??
What was ZITADEL's A.I Rankiteo Cyber Score in February 2026 ??
What was ZITADEL's A.I Rankiteo Cyber Score in January 2026 ??
What was ZITADEL's A.I Rankiteo Cyber Score in December 2025 ??
What was ZITADEL's A.I Rankiteo Cyber Score in November 2025 ??
What was ZITADEL's A.I Rankiteo Cyber Score in October 2025 ??
What was ZITADEL's A.I Rankiteo Cyber Score in September 2025 ??
What was ZITADEL's A.I Rankiteo Cyber Score in August 2025 ??
What was ZITADEL's A.I Rankiteo Cyber Score in July 2025 ??
What is the average per-incident point impact on ZITADEL's A.I Rankiteo Cyber Score over the past 12 months ??
Where can I access detailed records of all cyber incidents associated with ZITADEL ??
Where can I find a summary of the A.I Rankiteo Risk Scoring methodology ??
Where can I view ZITADEL's profile page on Rankiteo ??
How accurate is the A.I Rankiteo Risk Scoring methodology ?