---
id: CVE-2026-6552
title: 'Rejected reason: This CVE ID has been rejected'
summary: >-
  Rejected reason: This CVE ID has been rejected. GitLab determined that the
  reported behavior does not constitute a vulnerability: linking a group SAML
  identity requires the user to explicitly consent to that group controlling
  their GitLa…
severity: none
published: '2026-06-11'
updated: '2026-07-31'
source: NVD
sourceUrl: 'https://nvd.nist.gov/vuln/detail/CVE-2026-6552'
tags:
  - nvd
epss: 0.00355
epssPercentile: 0.28215
ingestedAt: '2026-07-31T22:04:40.984Z'
---

## Overview

Rejected reason: This CVE ID has been rejected. GitLab determined that the reported behavior does not constitute a vulnerability: linking a group SAML identity requires the user to explicitly consent to that group controlling their GitLab account for sign-in, and management of group SAML identities by a group Owner is therefore expected behavior rather than an authorization bypass. No GitLab version was affected.

## Remediation

Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
