CVE-2025-67495 | Zitadel up to 4.7.0 /logout post_logout_redirect cross site scripting (GHSA-v959-qxv6-6f8p)
A vulnerability has been found in Zitadel up to 4.7.0 and classified as problematic. Affected by this vulnerability is an unknown functionality of the file /logout. The manipulation of the argument post_logout_redirect leads to cross site scripting.
This vulnerability is referenced as CVE-2025-67495. Remote exploitation of the attack is possible. No exploit is available.
The affected component should be upgraded.