Cyber Security Blog
Blog posts about Cyber Security, Pentesting, Cloud Security and Red Teaming from our team.

Web/API Penetration Test
CVE-2026-42849: How One Link Can Take Over an Authentik Session
Found during a customer pentest: CVE-2026-42849 lets attackers take over an Authentik session via a crafted link. Finding, impact, and patch.
Jan Kahmen

Jan Kahmen
6 min read





