HIGH🇵🇱 Wersja polska

CVE-2025-31123

CVSS 8.7v3.1pub. 2025-03-31upd. 2025-08-26

Zitadel is open-source identity infrastructure software. A vulnerability existed where expired keys can be used to retrieve tokens. Specifically, ZITADEL fails to properly check the expiration date of the JWT key when used for Authorization Grants. This allows an attacker with an expired key to obtain valid access tokens. This vulnerability does not affect the use of JWT Profile for OAuth 2.0 Client Authentication on the Token and Introspection endpoints, which correctly reject expired keys. This vulnerability is fixed in 2.71.6, 2.70.8, 2.69.9, 2.68.9, 2.67.13, 2.66.16, 2.65.7, 2.64.6, and 2.63.9.

CVSS Vector
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:N
  • Zitadel

    APP
    Zitadel
    2.62.0 – 2.63.9 (excl.)2.64.0 – 2.64.6 (excl.)2.65.0 – 2.65.7 (excl.)2.66.0 – 2.66.16 (excl.)2.67.0 – 2.67.13 (excl.)2.68.0 – 2.68.9 (excl.)2.69.0 – 2.69.9 (excl.)2.70.0 – 2.70.8 (excl.)2.71.0 – 2.71.6 (excl.)
🔵
CHECK WITH VENDOR
No clear patch data available. Check vendor references.
CWE
References

Related vulnerabilities

CVE-2026-29191CRITICAL9.3PL ✓same product

XSS w Zitadel Login V2 — możliwe przejęcie konta przez /saml-post

CVE-2025-67494CRITICAL9.3PL ✓same product

SSRF bez uwierzytelnienia w ZITADEL — odczyt wewnętrznych zasobów sieciowych

CVE-2025-27507CRITICAL9.0PL ✓same product

IDOR w Zitadel Admin API umożliwia modyfikację wrażliwych ustawień

CVE-2026-44671HIGH7.5same product

ZITADEL is an open source identity management platform. From 2.71.11 to before 3.4.10 and 4.15.0, a vulnerabil...

CVE-2026-32130HIGH7.5same product

ZITADEL is an open source identity management platform. From 2.68.0 to before 3.4.8 and 4.12.2, Zitadel provid...