vciy

CVEs we hold for Okta

Records whose assigning authority named Okta as the affected vendor. Newest identifiers first, capped at 200.

CVE-2026-78635Improper Input Validation in the Okta Privileged Access SSH Client URL Handler ArgumentOkta Privileged Access Client
CVE-2026-78631Improper Restriction of Sensitive Information in Okta Hyperdrive Agent LoggingOkta Hyperdrive Agent
CVE-2026-78630Improper Input Neutralization in Okta Access Gateway SNMP Configuration ProcessingOkta Access Gateway
CVE-2026-78629Improper Authentication Verification in the Okta Hyperdrive Agent MFA Response HandlingOkta Hyperdrive Agent
CVE-2026-78627Improper Credential Protection in Okta Hyperdrive Integration Installer LoggingOkta Hyperdrive Integration Plugin
CVE-2026-78626Improper Input Sanitization in Okta Access Gateway Protected RulesOkta Access Gateway
CVE-2026-78625Insufficient Validation of Dashboard Application Labels in Okta Access Gateway Dashboard Site ConfigurationOkta Access Gateway
CVE-2026-78624Improper Path Validation in Okta Access Gateway Backup and Restore FunctionalityOkta Access Gateway
CVE-2026-78623Improper Handling of SAML Assertion Attributes in Okta Access Gateway Advanced Mode DatastoresOkta Access Gateway
CVE-2026-78622Improper Link Resolution in Okta Verify for Windows Uninstaller Data RemovalOkta Verify for Windows
CVE-2026-78620Improper Path Validation in Okta Access Gateway Kerberos Configuration HandlingOkta Access Gateway
CVE-2026-78579Improper Input Sanitization in Okta Access Gateway LDAP Datastore Filter InterpolationOkta Access Gateway
CVE-2026-78574Improper Assembly Resolution in Okta Hyperdrive Integration Plugin Registry HandlingOkta Hyperdrive Integration Plugin
CVE-2026-78560Improper Authentication Validation in Okta Access Gateway Pass-Through Authentication SourceOkta Access Gateway
CVE-2026-78552Validation Bypass in Okta Access Gateway Custom DirectivesOkta Access Gateway
CVE-2026-78550Improper Input Handling in Okta Access Gateway Management Console Exception HandlerOkta Access Gateway
CVE-2026-78545Improper Input Sanitization in Okta Access Gateway Application Label ConfigurationOkta Access Gateway
CVE-2026-77585Improper Validation of SSH Target in Okta Privileged Access ClientOkta Privileged Access Client
CVE-2025-7371no title heldOkta On-Premises Provisioning Agent
CVE-2025-67505Race condition in the Okta Java SDKokta-sdk-java
CVE-2025-66033Improper Memory Cleanup in the Okta Java SDKokta-sdk-java
CVE-2024-9875no title heldOkta Privileged Access Server Agent (SFTD)
CVE-2024-9191no title heldOkta Verify for Windows
CVE-2024-7061no title heldOkta Verify for Windows
CVE-2024-10327no title heldOkta Verify for iOS
CVE-2024-0981no title heldOkta Browser Plugin
CVE-2024-0980no title heldOkta Verify for Windows
CVE-2023-0392no title heldOkta LDAP Agent
CVE-2023-0093no title heldOkta Advanced Server Access
CVE-2022-3145no title heldOkta OIDC Middleware
CVE-2022-24295no title heldOkta Advanced Server Access Client
CVE-2022-1697no title heldOkta Active Directory Agent
CVE-2022-1030no title heldOkta Advanced Server Access Client

33 records, read from the index as it stood on 20 Sep 2026. Every row opens the record it names, and every value on that record opens its own receipt.

Everything on this page is free. Public data. Withholding it protects nothing.