Improper Assembly Resolution in Okta Hyperdrive Integration Plugin by Okta
CVE-2026-78574

7.5HIGH

Key Information:

Vendor

Okta

Vendor
CVE Published:
8 September 2026

What is CVE-2026-78574?

The Okta Hyperdrive Integration plugin contains a vulnerability that allows for improper assembly resolution by accessing a required assembly via a registry path within the current user's hive. This process lacks integrity verification, enabling unverified assemblies to execute in the context of the host process or an elevated installer. As a result, this vulnerability presents a significant risk, as malicious actors could exploit the unguarded assembly loading process, potentially leading to unauthorized access and execution within the user's environment.

Affected Version(s)

Okta Hyperdrive Integration Plugin 1.2.0 < 1.5.2

References

CVSS V3.1

Score:
7.5
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
High
Privileges Required:
Low
User Interaction:
None
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.