Aug. 31, 2022, 11:15 p.m. |

National Vulnerability Database web.nvd.nist.gov

ZITADEL combines the ease of Auth0 and the versatility of Keycloak.**Actions**, introduced in ZITADEL **1.42.0** on the API and **1.56.0** for Console, is a feature, where users with role.`ORG_OWNER` are able to create Javascript Code, which is invoked by the system at certain points during the login. **Actions**, for example, allow creating authorizations (user grants) on newly created users programmatically. Due to a missing authorization check, **Actions** were able to grant authorizations for projects that belong to other organizations inside …

cve zitadel

Information Security Engineers

@ D. E. Shaw Research | New York City

Technology Security Analyst

@ Halton Region | Oakville, Ontario, Canada

Senior Cyber Security Analyst

@ Valley Water | San Jose, CA

IT Consultant

@ Whitecollars | Erbil, Iraq

Sr. IAM Engineer - Okta (REMOTE)

@ GuidePoint Security LLC | Remote

DevSecOps Engineer

@ Raft | Remote, US