A vulnerability identified as critical has been detected in better-auth up to 1.7.0-beta.3. This vulnerability affects unknown code of the component SCIM. The manipulation leads to improper privilege management.

This vulnerability is traded as CVE-2026-67331. It is possible to initiate the attack remotely. There is no exploit available.

You should upgrade the affected component.