vciy

CVEs we hold for Getsentry

Records whose assigning authority named Getsentry as the affected vendor. Newest identifiers first, capped at 200.

CVE-2026-52794Sentry: Inefficient Regular Expression Complexity in sentrygetsentry sentry
CVE-2026-42354Sentry: Improper authentication on SAML SSO process allows user identity linkinggetsentry sentry
CVE-2026-27197Sentry: Improper Authentication on SAML SSO process allows user identity linkinggetsentry sentry
CVE-2026-26004Sentry allows unauthorized access to event data across organizational boundariesgetsentry sentry
CVE-2025-65944Sentry-Javascript deals with leaked sensitive headers when `sendDefaultPii` is set to `true`getsentry sentry-javascript
CVE-2025-53099Sentry Missing Invalidation of Authorization Codes During OAuth Exchange and Revocationgetsentry sentry
CVE-2025-22146Improper authentication on SAML SSO process allows user impersonation in sentrygetsentry sentry
CVE-2024-53253Sentry's improper error handling leaks Application Integration Client Secretgetsentry sentry
CVE-2024-45606Improper authorization on muting of alert rules in sentrygetsentry sentry
CVE-2024-45605Improper authorization on deletion of user issue alert notifications in sentrygetsentry sentry
CVE-2024-41656Sentry vulnerable to stored Cross-Site Scripting (XSS)getsentry sentry
CVE-2024-40647Unintentional exposure of environment variables to subprocesses in sentry-sdkgetsentry sentry-python
CVE-2024-35196Slack integration leaks sensitive information in logs in Sentrygetsentry sentry
CVE-2024-32474Sentry's superuser cleartext password leaked in logsgetsentry sentry
CVE-2024-24829SSRF in Sentry via Phabricator integrationgetsentry sentry
CVE-2023-51451SSRF in symbolicator via invalid protocolgetsentry symbolicator
CVE-2023-50249Sentry's Astro SDK vulnerable to ReDoSgetsentry sentry-javascript
CVE-2023-49094Symbolicator Server Side Request Forgery vulnerabilitygetsentry symbolicator
CVE-2023-46729Sentry Next.js vulnerable to SSRF via Next.js SDK tunnel endpointgetsentry sentry-javascript
CVE-2023-39531Sentry vulnerable to incorrect credential validation on OAuth token requestsgetsentry sentry
CVE-2023-39349Sentry vulnerable to privilege escalation via ApiTokensEndpointgetsentry sentry
CVE-2023-36829Sentry CORS misconfiguration vulnerabilitygetsentry sentry
CVE-2023-36826Sentry vulnerable to improper authorization on debug and artifact file downloadsgetsentry sentry
CVE-2023-28117Sentry SDK leaks sensitive session information when `sendDefaultPII` is set to `True`getsentry sentry-python
CVE-2022-23485Invite code reuse via cookie manipulation in sentrygetsentry sentry

25 records, read from the index as it stood on 20 Sep 2026. Every row opens the record it names, and every value on that record opens its own receipt.

Everything on this page is free. Public data. Withholding it protects nothing.