This vulnerability impacts all versions of IdentityIQ and allows an authenticated identity that is the requestor or assignee of a work item to edit the definition of a role without having an assigned capability that would allow role editing.
References
Configurations
Configuration 1 (hide)
|
History
No history.
Information
Published : 2026-04-29 18:16
Updated : 2026-06-17 10:59
NVD link : CVE-2026-5712
Mitre link : CVE-2026-5712
CVE.ORG link : CVE-2026-5712
JSON object : View
Products Affected
sailpoint
- identityiq
CWE
CWE-863
Incorrect Authorization
