authentik
Security Risk Profile
Security Risk Score
Comprehensive risk assessment based on 23 vulnerabilities, EPSS scores, exploitation status, and remediation availability.
📅 Data spans from June 28, 2024 to present
Threat Assessment
Severity Distribution
Exploit Likelihood
Age Distribution
Common Weaknesses (CWE)
Most Affected Products
Recent Vulnerabilities
See more →authentik: MFA Bypass via State Confusion / Parameter Injection in AuthenticatorEmailStage
authentik: Privilege Escalation to Superuser via Group Hierarchy
authentik: Stored credentials are readable with view permission alone
authentik: Authentication bypass via assertion confusion in SAML sources
authentik: Denial of Service via Document Type Declarations in SAML Messages
authentik: Authentication Flow Bypass via Unguarded challenge_valid() in AuthenticatorEndpointGDTCStage and GoogleChromeStageView
authentik: WS-Federation wreply origin bypass can exfiltrate signed login responses to attacker-controlled endpoints
authentik: Privilege Escalation via User PATCH: Superuser Group Assignment Bypasses enable_group_superuser
authentik: Non-admin user can retrieve confidential OAuth client_secret via /api/v3/oauth2/access_tokens/
authentik: SAML NameID XML Comment Injection Enables Authentication Bypass via Identifier Truncation
Monitor authentik in Real-Time
Get instant alerts when new vulnerabilities are discovered. Stay ahead of security threats with SecAlerts.