Python Package Security Update Advisory (CVE-2025-22146)

Overview

We have released a security update to address a vulnerability in sentry. Affected product users are advised to update to the latest version.

 

Affected Products

 

CVE-2025-22146

sentry versions: 21.12.0 (inclusive) to 24.12.1 (inclusive)

 

 

Resolved Vulnerabilities

Improper authentication vulnerability that could allow arbitrary user account takeover (CVE-2025-22146)

 

 

Vulnerability Patches

Vulnerability Patches have been made available in the latest updates. Please follow the instructions on the Referenced Sites to update to the latest Vulnerability Patches version.
 

 

CVE-2025-22146

sentry version: 25.1.0

 

 

References

[1] Improper authentication on SAML SSO process allows user impersonation
https://github.com/getsentry/sentry/security/advisories/GHSA-7pq6-v88g-wf3w