The Okta Access Gateway is vulnerable to improper input neutralization in SNMP configuration processing. An authenticated local user with access to the management interface can supply crafted values, resulting in the execution of arbitrary OS commands with root privileges. This vulnerability allows an attacker to execute arbitrary OS commands with root privileges, potentially leading to system compromise [truncated]
The Okta Hyperdrive agent plugin returns a success response without a signed SAML assertion when the organization's policy requires no MFA for a given user. This results in an unverifiable authentication verdict being delivered to the relying application. The vulnerability requires verification of plugin versions and MFA configurations to prevent security risks. Defenders should prioritize remediation due [truncated]
CVE-2026-78625 Okta Access Gateway PHP configuration file injection allows attackers to execute malicious PHP code with web server process privileges via unsanitized dashboard label values. Okta Access Gateway administrators and security teams should assess exposure and prioritize remediation, focusing on verifying dashboard label values and Okta Access Gateway version, and consider compensating controls [truncated]
The Okta Access Gateway backup restore function does not validate the filename embedded in an encrypted backup payload, allowing file contents to be written to unintended locations on the appliance filesystem. This medium-severity vulnerability, with a CVSS score of 4.9, was published on 2026-09-08 and last modified on 2026-09-22. The vulnerability affects Okta Access Gateway deployments, and defenders sh [truncated]
The Okta Access Gateway is vulnerable to SQL injection in advanced mode datastore configurations due to unsanitized SAML assertion values being directly interpolated into database queries. This issue, tracked as CVE-2026-78623, has a CVSS score of 7.7 and is considered high severity. The vulnerability allows for unintended SQL execution against the configured backend database when specific SAML assertion [truncated]
The Okta Access Gateway Kerberos configuration handler does not validate file paths specified in event payloads before writing file contents. This CVE was published on 2026-09-08T20:18:36.777Z and was last modified on 2026-09-22T20:39:20.293Z. The NVD entry is currently Analyzed. Defenders should assess exposure and verify configurations to prevent potential path traversal issues. The vulnerability allows [truncated]