CVE-2026-49448 - Critical authentication bypass in Authentik. Sending an empty POST bypasses the Source stage. CVSS 9.8. Update to 2025.12.6, 2026.2.4, or 2026.5.1 immediately. #CVE #Authentik #infosec
CVE-2026-49448 - Critical authentication bypass in Authentik. Sending an empty POST bypasses the Source stage. CVSS 9.8. Update to 2025.12.6, 2026.2.4, or 2026.5.1 immediately. #CVE #Authentik #infosec
In my #SSO / #IdM adventures, looks like if I wanted to allow people to use my hackerspace's #OIDC SSO to access my services, I can configure this in #Authentik, but not in #KaniDM 🤔
Logins voll im Griff! 🔐 #shipit
**authentik**: Die mächtige Open-Source Identity-Lösung für dein Homelab. Unterstützt OAuth2, SAML, LDAP & mehr. Sicher, flexibel & hübsch!
Link: https://github.com/goauthentik/authentik
#authentik #SSO #SelfHosted #Security #Homelab #OpenSource #RadioTux
Spent four hours trying to install Authentik. First I ran into https://github.com/goauthentik/authentik/issues/8127
Then I ran into an issue in portainer:
If a Stack (docker compose file) defines an `environment:` for a container, the also defined environment variables do NOT get populated into the container. This then broke Authentik's email configuration.

Describe your question/ Simply set up Authentik in portainer with a stack. Relevant infos Debian 12, Portainer BE 2.19.4, Docker-ce 5:24.0.7, Docker Compose 2.21.0, Authentik 2023.10.6 Screenshots ...