Analysis and contextual insights are available on OpenCVE Cloud.
Vendor Solution
Upgrade the Okta Verify for Windows client to version 7.0.0 or greater.
Tracking
Sign in to view the affected projects.
No advisories yet.
Sun, 13 Sep 2026 20:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Okta
Okta okta Verify For Windows |
|
| Vendors & Products |
Okta
Okta okta Verify For Windows |
Thu, 10 Sep 2026 15:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 08 Sep 2026 20:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | The Okta Verify for Windows uninstaller does not verify whether the user data directory is a filesystem junction before deleting its contents with elevated privileges. The delete operation follows the junction target, resulting in recursive deletion of unintended directory contents. | |
| Title | Improper Link Resolution in Okta Verify for Windows Uninstaller Data Removal | |
| Weaknesses | CWE-59 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: Okta
Published:
Updated: 2026-09-10T14:42:00.497Z
Reserved: 2026-08-24T21:54:34.029Z
Link: CVE-2026-78622
Updated: 2026-09-10T14:41:55.124Z
Status : Awaiting Analysis
Published: 2026-09-08T21:18:41.233
Modified: 2026-09-10T15:17:41.753
Link: CVE-2026-78622
No data.
OpenCVE Enrichment
Updated: 2026-09-13T20:06:44Z
-
CWE-59
Improper Link Resolution Before File Access ('Link Following')