hyperdrive_agent vulnerabilities
CVEs whose affected-version data names the hyperdrive_agent package. Each record lists the affected and patched versions; check a specific version with the dependency checker or POST /api/sbom.
2 CVEsRSS
CVE-2026-78631Medium· 5.3The Okta Hyperdrive Agent writes the decoded SAML bearer assertion to a local application log file at the default log level on every successful MFA completion
The Okta Hyperdrive Agent writes the decoded SAML bearer assertion to a local application log file at the default log level on every successful MFA completion. This insertion of sensitive information into the log file makes a live authen…
▾ SunlitOkta · Okta Hyperdrive AgentEPSS 0.10%via NVD
CVE-2026-78629Medium· 5.6The Okta Hyperdrive agent plugin returns a success response without a signed SAML assertion when the organization's policy requires no MFA for a given user
The Okta Hyperdrive agent plugin returns a success response without a signed SAML assertion when the organization's policy requires no MFA for a given user. The response contains only a bare boolean validation indicator with no cryptogra…
▾ SunlitOkta · Okta Hyperdrive AgentEPSS 0.10%via NVD