Known Vulnerabilities for Credential Provider by Cyberark
Listed below are 3 of the newest known vulnerabilities associated with "Credential Provider" by "Cyberark".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-101042 json | Parse Server is an open-source backend server. In versions >= 9.0.0 < 9.10.1-alpha.10 and >= 8.0.2 < 8.6.91, the code-based a... | Not Provided | 2026-09-27 | 2026-09-30 |
| CVE-2026-100548 json | OpenClaw (npm package 'openclaw') versions >= 2026.3.28 and < 2026.8.1 contain a credential exposure issue in memory embeddin... | Not Provided | 2026-09-26 | 2026-09-30 |
| CVE-2026-100528 json | OpenClaw (npm package 'openclaw') before 2026.8.1 could send third-party provider credentials to the wrong endpoint. In affec... | Not Provided | 2026-09-26 | 2026-09-30 |
| CVE-2026-92916 json | Grav is a flat-file CMS. In Grav 1.7.0 through 1.7.53.2 and 2.0.0 through 2.0.21, when the debugger is enabled (system.debugg... | Not Provided | 2026-09-17 | 2026-09-30 |
| CVE-2026-90534 json | Flowise is a low-code platform for building LLM applications. In versions up to and including 3.1.3, the POST /api/v1/node-lo... | Not Provided | 2026-09-12 | 2026-09-14 |
| CVE-2026-90452 json | Requests from the reverse proxy to the identity-provider service for token discovery, introspection, and credential exchange ... | Not Provided | 2026-09-11 | 2026-09-14 |
| CVE-2026-89278 json | The GPTranslate – Multilingual AI Translation Agent for WordPress: Translate Your Site with AI plugin for WordPress is vuln... | Not Provided | 2026-09-18 | 2026-09-18 |
| CVE-2026-89022 json | BookStack before 26.05.5 contains an authentication bypass vulnerability in its social login implementation that allows unaut... | Not Provided | 2026-09-15 | 2026-09-15 |
| CVE-2026-86756 json | Snipe-IT 8.5.0 through 8.6.3 contains an open redirect vulnerability in its SAML assertion-consumer endpoint (SamlController:... | Not Provided | 2026-09-09 | 2026-09-09 |
| CVE-2026-84377 json | LiteLLM is a proxy server (AI Gateway) to call LLM APIs in OpenAI (or native) format. Prior to versions 1.88.6 and 1.96.2, an... | Not Provided | 2026-09-02 | 2026-09-03 |