All intelligence
// vulnerability record
cached · NVD via COSMOS syncCVE-2026-12341
HIGHpublished 2026-07-20 19:17 UTC · 18 hours ago
8.8
CVSS / 10
// description
This vulnerability impacts all versions of IdentityIQ and allows an unauthenticated attacker unauthorized access to protected APIs and data due to improper validation of OAuth bearer tokens.
// weaknesses (CWE)
- CWE-287