
Critical Sentry SAML SSO flaw enables account takeover
CVE-2026-27197 is a critical SAML SSO flaw in self-hosted Sentry that can enable account takeover in multi-organization instances.
CVEIdentitySSO
1 min21 Feb 2026
Application security news, updated daily (if there is any news to share).
Content is AI-assisted and reviewed by our team, but issues may be missed and best practices evolve rapidly, send corrections to [email protected]. Always consult official documentation and validate key implementation decisions before making design or security choices.

CVE-2026-27197 is a critical SAML SSO flaw in self-hosted Sentry that can enable account takeover in multi-organization instances.

CVE-2026-27134 in Strimzi 0.49.0–0.50.0 can trust every CA in a provided multi-CA chain, weakening mTLS authentication on Kafka listeners.