CVE-2026-48794: Authelia has an Edge Case Access Control Rule Mismatch
Due to lack of canonicalization of domains in very specific edge cases an access control rule may be skipped when it should match a request.
References
Code Behaviors & Features
Detect and mitigate CVE-2026-48794 with GitLab Dependency Scanning
Secure your software supply chain by verifying that all open source dependencies used in your projects contain no disclosed vulnerabilities. Learn more about Dependency Scanning →