CVE-2025-31124 | Zitadel up to 2.71.5 Ignoring Unknown Usernames information exposure (GHSA-67m4-8g4w-633q)
A vulnerability was found in Zitadel up to 2.71.5. It has been classified as problematic. Affected is an unknown function of the component Ignoring Unknown Usernames Handler. The manipulation leads to information exposure through discrepancy.
This vulnerability is traded as CVE-2025-31124. It is possible to launch the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.