SecAlerts
i

idira

Security Risk Profile

68
/100
high

Security Risk Score

Comprehensive risk assessment based on 10 vulnerabilities, EPSS scores, exploitation status, and remediation availability.

📅 Data spans from June 11, 2026 to present

10
Total CVEs
10
Critical+High
0
Exploited
10
Unpatched

Threat Assessment

Avg CVSS
8.5
Base severity
Avg EPSS
0%
Exploit probability
Unpatched
10
Critical/High
Risk Level
68/100
high

Severity Distribution

Critical
1
High
9
Medium
0
Low
0

Exploit Likelihood

>50% chance
0
20-50%
0
5-20%
0
<5%
0

Age Distribution

Common Weaknesses (CWE)

1
Input Validation
2
2
Path Traversal
1
3
OS Command Injection
1

Most Affected Products

1. Idira Privileged Access Manager (PAM) Self-Hosted Vault1
2. Idira Idira Privilege Cloud Connector1
3. Idira Privileged Session Manager (PSM)1
4. Idira Idira Privileged Session Manager for SSH (PSMP)1
5. Idira Idira Identity Browser Extension1

Recent Vulnerabilities

See more →
CVE-2026-45169
CVSS 8.7high

Idira Privileged Access Manager (PAM) Self-Hosted Vault: Denial of Service due to Unexpected Input Processing

Jun 12, 2026🔧 No Patch
CVE-2026-45170
CVSS 7.5high

Idira Vendor PAM - Self-Hosted Connector: Potential Security Bypass due to Incomplete TLS Certificate Validation

Jun 12, 2026🔧 No Patch
CVE-2026-45171
CVSS 8.7high

Idira Privileged Session Manager (PSM): Potential Code Execution due to an Incomplete Input Validation

Jun 11, 2026🔧 No Patch
CVE-2026-45172
CVSS 8.7high

Idira Privileged Session Manager for SSH (PSMP): Arbitrary Command Execution via Improper Neutralization of Special Elements used in an OS Command

Jun 11, 2026🔧 No Patch
CVE-2026-45173
CVSS 8.4high

Idira Identity Browser Extension: Unauthorized Application Interaction via Origin Validation Failure

Jun 11, 2026🔧 No Patch
CVE-2026-45174
CVSS 8.5high

Idira Endpoint Privilege Manager Linux Agent: Potential bypass of Agent Daemon Initialization

Jun 11, 2026🔧 No Patch
CVE-2026-45175
CVSS 8.5high

Idira Endpoint Privilege Manager Agent: Security Control and Cryptographic Validation Bypass in Internal Agent Validation Processes

Jun 11, 2026🔧 No Patch
CVE-2026-45176
CVSS 8.9high

Idira Endpoint Privilege Manager Agent: Local Privilege Escalation via Internal Communication or File Operation Manipulation

Jun 11, 2026🔧 No Patch
CVE-2026-45177
CVSS 9.1critical

Idira Secrets Manager SaaS Edge: Authentication Bypass of an internal validation mechanism

Jun 11, 2026🔧 No Patch
CVE-2026-45178
CVSS 8.4high

Idira Secrets Manager Self-Hosted: Improper Access Control in Internal Cluster Endpoints

Jun 11, 2026🔧 No Patch

Monitor idira in Real-Time

Get instant alerts when new vulnerabilities are discovered. Stay ahead of security threats with SecAlerts.

Powered bySecAlerts

Monitor Your Software Stack in Real-Time

Get instant alerts when vulnerabilities are discovered in your software stack. Stay ahead of security threats with SecAlerts.

© 2026 SecAlerts Pty Ltd. All rights reserved.