Known Vulnerabilities for Web Policy Agents by Forgerock
Listed below are 1 of the newest known vulnerabilities associated with "Web Policy Agents" by "Forgerock".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-72631 json | Improper Privilege Management (CWE-269) in Kibana Fleet can lead to privilege escalation via Privilege Escalation (CAPEC-233)... | Not Provided | 2026-08-13 | 2026-08-14 |
| CVE-2026-49856 json | @jshookmcp/jshook is an MCP server that gives AI agents tools for JavaScript analysis and security research. In version 0.3.1... | Not Provided | 2026-08-13 | 2026-08-13 |
| CVE-2026-49095 json | Improper Input Validation (CWE-20) in the Kibana Fleet agent policy management feature can lead to privilege escalation. An a... | Not Provided | 2026-05-28 | 2026-05-30 |
| CVE-2023-0339 json | Relative Path Traversal vulnerability in ForgeRock Access Management Web Policy Agent allows Authentication Bypass. This issu... | 9.8 - CRITICAL | 2023-02-28 | 2023-11-07 |