CVE-2026-15617
UNKNOWN
NVD
CVSS Score
0
Severity
UNKNOWN
Published
Jul 23, 2026
Vendor
unknown
Description
Logto performs principal lookup without normalizing email and identifier strings, enabling principal collision and unauthorized account access via case- or Unicode-different identities.