Vulnerability Details CVE-2026-12341
This vulnerability
impacts all versions of IdentityIQ and allows an unauthenticated attacker
unauthorized access to protected APIs and data due to improper validation of
OAuth bearer tokens.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.002
EPSS Ranking 12.2%
CVSS Severity
CVSS v3 Score 8.8
Products affected by CVE-2026-12341
-
cpe:2.3:a:sailpoint:identityiq:7.1
-
cpe:2.3:a:sailpoint:identityiq:7.2
-
cpe:2.3:a:sailpoint:identityiq:7.3
-
cpe:2.3:a:sailpoint:identityiq:8.0
-
cpe:2.3:a:sailpoint:identityiq:8.1
-
cpe:2.3:a:sailpoint:identityiq:8.2
-
cpe:2.3:a:sailpoint:identityiq:8.3
-
cpe:2.3:a:sailpoint:identityiq:8.4
-
cpe:2.3:a:sailpoint:identityiq:8.5