VDB
KO

GO-2026-5391

ZITADEL: Missing Token Audience Validation (`aud`) in JWT IdP Provider in github.com/zitadel/zitadel

Details

ZITADEL: Missing Token Audience Validation (`aud`) in JWT IdP Provider in github.com/zitadel/zitadel

Are you affected?

Enter the version of the package you're using.

Affected packages

Go / github.com/zitadel/zitadel
Introduced in: 0 Fixed in: 1.80.0-v2.20.0.20260615132747-d184e976fc79
Fix go get github.com/zitadel/zitadel@v1.80.0-v2.20.0.20260615132747-d184e976fc79

References