Search
Search Results (2 CVEs found)
| CVE | Vendors | Products | Updated | CVSS v3.1 |
|---|---|---|---|---|
| CVE-2026-78635 | 1 Okta | 1 Okta Privileged Access Client | 2026-09-11 | 5 Medium |
| The Okta Privileged Access client URL handler does not insert an option terminator before appending the target value to the command-line arguments. When a scaleft:// protocol handler link contains a value beginning with a hyphen, the underlying CLI framework interprets it as a command-line flag, causing unintended modification of the SSH client's behavior. | ||||
| CVE-2026-77585 | 1 Okta | 1 Okta Privileged Access Client | 2026-08-28 | 5.3 Medium |
| The Okta Privileged Access client does not reject a leading hyphen in the username portion of an SSH target. As a result, the value may be interpreted as a command-line option by the underlying SSH process. | ||||
Page 1 of 1.