CVE-2023-0339: ForgeRock Web Policy Agents

Critical severity, CVSS 9.8. EPSS: 1% chance of exploitation in the next 30 days.

Relative Path Traversal vulnerability in ForgeRock Access Management Web Policy Agent allows Authentication Bypass. This issue affects Access Management Web Policy Agent: all versions up to 5.10.1

Affected products

  • ForgeRock Web Policy Agents: up to and including 5.10.1

Published 2023-02-28. Last modified 2026-06-17.