Every CVE whose affected-product data names Okta Hyperdrive, ordered by CVSS severity, with EPSS exploit prediction and CISA KEV status.
CVEs (4)
CVE-2026-78574 — CVSS 7.5 (high): The Okta Hyperdrive Integration plugin resolves a required assembly using a registry path within the current user's hive without integrity…
CVE-2026-78627 — CVSS 7.3 (high): The Okta Hyperdrive Integration installer does not mask the OAuth client secret when passed as an MSI property. The credential is recorded…
CVE-2026-78629 — CVSS 5.6 (medium): The Okta Hyperdrive agent plugin returns a success response without a signed SAML assertion when the organization's policy requires no MFA…
CVE-2026-78631 — CVSS 5.3 (medium): The Okta Hyperdrive Agent writes the decoded SAML bearer assertion to a local application log file at the default log level on every…