VYPR

IdentityIQ Lifecycle Manager

by Sailpoint

CVEs (2)

  • CVE-2024-2228HigMar 22, 2024
    risk 0.46cvss 7.1epss 0.00

    This vulnerability allows an authenticated user to perform a Lifecycle Manager flow or other QuickLink for a target user outside of the defined QuickLink Population.

  • CVE-2024-1714HigFeb 21, 2024
    risk 0.46cvss 7.1epss 0.00

    An issue exists in all supported versions of IdentityIQ Lifecycle Manager that can result if an entitlement with a value containing leading or trailing whitespace is requested by an authenticated user in an access request.