CVE-2026-6552
NONE—CVSS v3
—CVSS v2
0.36%
EPSS (exploit probability)
—CWE
Description
Rejected reason: This CVE ID has been rejected. GitLab determined that the reported behavior does not constitute a vulnerability: linking a group SAML identity requires the user to explicitly consent to that group controlling their GitLab account for sign-in, and management of group SAML identities by a group Owner is therefore expected behavior rather than an authorization bypass. No GitLab version was affected.
Affected routers (0)
No routers currently mapped to this CVE in our database.