These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.
CVE-2026-45169 is a HIGH severity vulnerability in Idiria Privileged Access Manager (PAM) Self-Hosted Vault. Versions prior to 15.0.3, 14.6.5, 14.2.7, and 14.0.8 exhibit a validation vulnerability. Under specific circumstances and configuration scenarios, processing unexpected input could potentially lead to an unexpected service termination, resulting in a localized denial of service (DoS).
CVE-2026-45170 is a HIGH-severity vulnerability (CVSS Score: 7.5) affecting Idiria Privilege Cloud Connector versions prior to 1.1.100504. Under specific conditions and configuration scenarios, TLS certificate validation may not be fully enforced, potentially allowing for security risks. The vulnerability was published on [cvePublishedAt] and last modified on [cveModifiedAt].
CVE-2026-45174 is a HIGH-severity vulnerability in Idiria Endpoint Privilege Manager Linux Agent versions prior to 26.5. A local attacker could potentially compromise the agent daemon initialization. The CVE was published on 2026-06-11T22:16:57.613Z and last modified on 2026-06-12T15:30:26.567Z.
CVE-2026-45173 is a HIGH severity vulnerability in Idiria Identity Browser Extension versions prior to 26.8.1. The vulnerability exhibits an origin validation flaw within its internal web-page verification routines. If an authenticated user navigates to a specially crafted webpage, this interaction could potentially allow a remote attacker to trigger unauthorized application interaction or execution param [truncated]
CVE-2026-45172 is a HIGH-severity vulnerability in Idira Privileged Session Manager for SSH (PSMP). An authenticated, low-privileged user could potentially execute arbitrary commands on the PSMP host due to incomplete input validation. Affected versions include those prior to 15.0.2, 14.6.3, 14.2.5, and 14.0.6.
CVE-2026-45171 is a HIGH-severity vulnerability with a CVSS score of 8.7. The vulnerability affects Idira Privileged Session Manager (PSM) versions prior to 15.0.3, 14.6.3, 14.2.5, and 14.0.5. An authenticated, low-privileged user could potentially execute arbitrary code due to incomplete input validation and improperly configured folder permissions.
CVE-2026-45175 is a HIGH-severity vulnerability in Idiria Endpoint Privilege Manager Agent versions prior to 26.5. The vulnerability, reported by CyberArk, allows a local attacker to potentially bypass built-in security controls or cryptographic validations, enabling unauthorized operations. The CVSS score for this vulnerability is 8.5.
CVE-2026-45178 is a HIGH severity vulnerability in Idiria Secrets Manager Self-Hosted versions 13.8.0 and lower. The vulnerability exhibits improper access control within internal cluster endpoints, allowing a remote, authenticated attacker with standard node-level credentials to potentially retrieve unauthorized secrets or cause a denial of service (DoS). The vulnerability has a CVSS score of 8.4.
CVE-2026-45177 is a critical vulnerability in Idiria Secrets Manager SaaS Edge versions prior to 1.8. The vulnerability exhibits improper access control within its internal authentication components. A remote, unauthenticated attacker could exploit this by submitting a specially crafted request. Under specific circumstances, this could allow the attacker to manipulate internal validation mechanisms, poten [truncated]
CVE-2026-45176 is a HIGH-severity vulnerability in Idiria Endpoint Privilege Manager Agent versions prior to 26.5. The vulnerability exhibits improper access control within high-privileged agent components, allowing a local, low-privileged attacker to potentially bypass permission restrictions and execute unauthorized local actions with elevated privileges.