CVEs we hold for Getsentry
Records whose assigning authority named Getsentry as the affected vendor. Newest identifiers first, capped at 200.
CVE-2026-42354Sentry: Improper authentication on SAML SSO process allows user identity linkinggetsentry sentry
CVE-2026-27197Sentry: Improper Authentication on SAML SSO process allows user identity linkinggetsentry sentry
CVE-2026-26004Sentry allows unauthorized access to event data across organizational boundariesgetsentry sentry
CVE-2025-65944Sentry-Javascript deals with leaked sensitive headers when `sendDefaultPii` is set to `true`getsentry sentry-javascript
CVE-2025-53099Sentry Missing Invalidation of Authorization Codes During OAuth Exchange and Revocationgetsentry sentry
CVE-2025-22146Improper authentication on SAML SSO process allows user impersonation in sentrygetsentry sentry
CVE-2024-53253Sentry's improper error handling leaks Application Integration Client Secretgetsentry sentry
CVE-2024-45605Improper authorization on deletion of user issue alert notifications in sentrygetsentry sentry
CVE-2024-40647Unintentional exposure of environment variables to subprocesses in sentry-sdkgetsentry sentry-python
CVE-2023-46729Sentry Next.js vulnerable to SSRF via Next.js SDK tunnel endpointgetsentry sentry-javascript
CVE-2023-39531Sentry vulnerable to incorrect credential validation on OAuth token requestsgetsentry sentry
CVE-2023-36826Sentry vulnerable to improper authorization on debug and artifact file downloadsgetsentry sentry
CVE-2023-28117Sentry SDK leaks sensitive session information when `sendDefaultPII` is set to `True`getsentry sentry-python
25 records, read from the index as it stood on 20 Sep 2026. Every row opens the record it names, and every value on that record opens its own receipt.
Everything on this page is free. Public data. Withholding it protects nothing.