Vulnerability Description
Rejected reason: This CVE ID has been rejected. GitLab determined that the reported behavior does not constitute a vulnerability: linking a group SAML identity requires the user to explicitly consent to that group controlling their GitLab account for sign-in, and management of group SAML identities by a group Owner is therefore expected behavior rather than an authorization bypass. No GitLab version was affected.
FAQ
What is CVE-2026-6552?
CVE-2026-6552 is a documented vulnerability. Rejected reason: This CVE ID has been rejected. GitLab determined that the reported behavior does not constitute a vulnerability: linking a group SAML identity requires the user to explicitly consent ...
How severe is CVE-2026-6552?
CVSS scoring is not yet available for CVE-2026-6552. Check NVD for updates.
Is there a patch for CVE-2026-6552?
Check the references section above for vendor advisories and patch information. Review vendor security bulletins for remediation guidance.