Python Package Security Update Advisory (CVE-2025-22146)
Overview
We have released a security update to address a vulnerability in sentry. Affected product users are advised to update to the latest version.
Affected Products
CVE-2025-22146
sentry versions: 21.12.0 (inclusive) to 24.12.1 (inclusive)
Resolved Vulnerabilities
Improper authentication vulnerability that could allow arbitrary user account takeover (CVE-2025-22146)
Vulnerability Patches
Vulnerability Patches have been made available in the latest updates. Please follow the instructions on the Referenced Sites to update to the latest Vulnerability Patches version.
CVE-2025-22146
sentry version: 25.1.0
References
[1] Improper authentication on SAML SSO process allows user impersonation
https://github.com/getsentry/sentry/security/advisories/GHSA-7pq6-v88g-wf3w