Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2026-78550

The Okta Access Gateway management console passes user-supplied input to eval() without sanitization during an authenticated administrator SSH session. As a result, the unsanitized input is executed directly, leading to code execution with the privileges of the management console.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.004
EPSS Ranking 29.5%
CVSS Severity
CVSS v3 Score 6.6


Contact Us

Shodan ® - All rights reserved