PT-2026-88430 · Okta · Okta Hyperdrive Integration Plugin

CVE-2026-78574

·

Publicado

2026-09-08

·

Atualizado

2026-09-08

CVSS v3.1

7.5

Alta

VetorAV:L/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:N
The Okta Hyperdrive Integration plugin resolves a required assembly using a registry path within the current user's hive without integrity verification. The referenced path is loaded via Assembly.LoadFrom without signature validation, resulting in an unverified assembly executing within the context of the host process or elevated installer.

Correção

Untrusted Search Path

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2026-78574

Produtos afetados

Okta Hyperdrive Integration Plugin