Known Vulnerabilities for Web Policy Agents by Forgerock
Listed below are 1 of the newest known vulnerabilities associated with "Web Policy Agents" by "Forgerock".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-78583 json | Incorrect Authorization (CWE-863) in Kibana can lead to privilege escalation via Input Data Manipulation (CAPEC-153). Elastic... | Not Provided | 2026-09-03 | 2026-09-03 |
| CVE-2026-72631 json | Improper Privilege Management (CWE-269) in Kibana Fleet can lead to privilege escalation via Privilege Escalation (CAPEC-233)... | Not Provided | 2026-08-13 | 2026-08-14 |
| CVE-2026-49856 json | @jshookmcp/jshook is an MCP server that gives AI agents tools for JavaScript analysis and security research. In version 0.3.1... | Not Provided | 2026-08-13 | 2026-08-13 |
| CVE-2026-46370 json | Fleet is an open-source device management platform built on osquery. In versions up to and including 4.84.1, the labels host-... | Not Provided | 2026-08-26 | 2026-08-29 |
| CVE-2023-0339 json | Relative Path Traversal vulnerability in ForgeRock Access Management Web Policy Agent allows Authentication Bypass. This issu... | 9.8 - CRITICAL | 2023-02-28 | 2023-11-07 |