0D54z00007YoRMMCA3Okta Classic EngineSingle Sign-OnAnswered2024-03-25T12:58:09.000Z2022-04-06T16:05:08.000Z2022-04-07T16:05:09.000Z

sk84t (sk84t) asked a question.

Spring4Shell?

Does anyone know if Okta utilizes the SpringCore framework for their SSO product, and if so, are they potentially vulnerable to it? There's been a lot of chatter over the past couple of weeks surrounding this and I haven't seen any official statement from the vendor. In case anyone needs a reference, it's CVE-2022–22965. Note that this is different from the SpringCloud vulnerability (CVE-2022-2296) but we may as well include this in this conversation.

 

Thanks in advance.

 


This question is closed.

Recommended content

No recommended content found...