Export limit exceeded: 390878 CVEs match your query. Please refine your search to export 10,000 CVEs or fewer.
Export limit exceeded: 390878 CVEs match your query. Please refine your search to export 10,000 CVEs or fewer.
Search
Search Results (2 CVEs found)
| CVE | Vendors | Products | Updated | CVSS v3.1 |
|---|---|---|---|---|
| CVE-2026-78574 | 1 Okta | 1 Okta Hyperdrive Integration Plugin | 2026-09-13 | 7.5 High |
| The Okta Hyperdrive Integration plugin resolves a required assembly using a registry path within the current user's hive without integrity verification. The referenced path is loaded via Assembly.LoadFrom without signature validation, resulting in an unverified assembly executing within the context of the host process or elevated installer. | ||||
| CVE-2026-78627 | 1 Okta | 1 Okta Hyperdrive Integration Plugin | 2026-09-13 | 7.3 High |
| The Okta Hyperdrive Integration installer does not mask the OAuth client secret when passed as an MSI property. The credential is recorded in plaintext in the installer log, the Application Event Log, and the process command line, all of which are readable by an authenticated local user on the workstation. | ||||
Page 1 of 1.