CVE-2026-45177
CyberArk Software, a Palo Alto Networks Company Conjur Cloud (Edge Finding only), idira secrets manager edge
Idira Secrets Manager SaaS Edge versions prior to 1.8 exhibit improper access control within its internal authentication components. A remote, unauthenticated attacker could exploit this by submitting a specially crafted request. Under specific circumstances, this could allow the attacker to manipulate internal validation mechanisms, potentially leading to a bypass of identity verification and the unauthorized acquisition of an access token. CyberArk Security Bulletin: CA26-20
- CVSS
- 9.1
- EPSS
- 0.50% 40.3% percentile
- CISA KEV
- Not listed
- Published
- 2026.06.12