Known vulnerabilities in IdentityIQ
Vendor:
SailPoint
Software:
IdentityIQ
Software CPE:
cpe:2.3:a:sailpoint:identityiq:*:*:*:*:*:*:*:*
Website:
https://www.sailpoint.com/
Total vulnerabilities:
5
Public exploits:
0
Known exploited (KEV):
0
Highest CVSSv4 Score:
8.8
Breakdown by Severity Chart
Vulnerabilities (5)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU152752 - Improper input validation CVE-2026-12342 |
CWE-20 | High | - | 29.09.2026 |
SB2026092929 |
||
| #VU128478 - Improper Authorization CVE-2026-5712 |
CWE-285 | Medium | 8.3p5, 8.4p4, 8.5p2 | 29.04.2026 |
SB20260429104 |
||
| #VU126469 - Incorrect Authorization CVE-2026-4857 |
CWE-863 | Low | 8.4p4, 8.5p2 | 17.04.2026 |
SB2025110341 |
||
| #VU117935 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') CVE-2025-10280 |
CWE-79 | Low | 8.3p6, 8.4p4 | 03.11.2025 |
SB2025110341 |
||
| #VU111156 - Improper Access Control CVE-2024-10905 |
CWE-284 | High | 8.2p8, 8.3p5, 8.4p2 | 16.06.2025 |
SB2025061621 |