Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

CVE-2026-85057— ZITADEL: Actions V1 sandbox escape: host file read via require()

Quick assessment

Affected
zitadel zitadel
Exploitation
No confirmed in-the-wild exploitation; assess based on exposure
Recommended action
Check the vendor advisory and references for a fixed version. If immediate upgrade is impossible, restrict exposure and increase monitoring.

ZITADEL 是一个开源的身份管理平台。在版本 3.0.0 至 3.4.13 以及 4.16.1 之前,ZITADEL Actions V1 功能启用了兼容 Node.js 的 注册表,但未对其文件系统源加载器施加适当限制。拥有 、 和 权限的组织 Action 编写者,可在 OIDC、SAML 和登录流程触发点执行 JavaScript 代码,并加载 ZITADEL 服务器进程可读的文件。这可能导致挂载的配置文件和敏感信息(包括通过 或 存储的凭据)泄露。攻击者可通过恢复启动凭据,实现从组织管理员到实例管理员的

CVSS 8.7 · High EPSS 0.39% · P31
Get alerts for future matching vulnerabilities Log in to subscribe

I. Basic Information for CVE-2026-85057

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
ZITADEL: Actions V1 sandbox escape: host file read via require()
Source: CVE Program / CVE List V5
Vulnerability Description
ZITADEL is an open source identity management platform. From 3.0.0 until 3.4.13 and 4.16.1, ZITADEL Actions V1 enables the goja Node-compatible require() registry without restricting its filesystem source loader. An organization Action author with ORG_OWNER, org.action.write, and org.flow.write permissions can run JavaScript at OIDC, SAML, and login-flow trigger points and load files readable by the ZITADEL server process. This can disclose mounted configuration and secrets, including credentials stored through ZITADEL_FIRSTINSTANCE_LOGINCLIENTPATPATH or ZITADEL_FIRSTINSTANCE_MACHINEKEYPATH, and recovered bootstrap credentials can enable escalation from an organization administrator to an instance administrator. The issue affects Actions V1, and host command execution is not established. This issue is fixed in versions 3.4.13 and 4.16.1.
Source: CVE Program / CVE List V5
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:N
Source: CVE Program / CVE List V5
Vulnerability Type
访问控制不恰当
Source: CVE Program / CVE List V5

Affected Products

Vendor Product Affected Versions CPE Subscribe
zitadel zitadel >= 3.0.0, < 3.4.13 -

II. Public POCs for CVE-2026-85057

# POC Description Source Link Shenlong Link
AI-Generated POC Premium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2026-85057

请登录查看更多情报信息。

Other References for CVE-2026-85057 (6)

IV. Related Vulnerabilities

V. Comments for CVE-2026-85057

No comments yet


Leave a comment