CVE-2024-45589: Identityautomation Rapididentity

Medium severity, CVSS 5.9. EPSS: 0.9% chance of exploitation in the next 30 days.

RapidIdentity LTS through 2023.0.2 and Cloud through 2024.08.0 improperly restricts excessive authentication attempts and allows a remote attacker to cause a denial of service via the username parameters.

Affected products

  • Identityautomation Rapididentity: up to and including 2023.0.2; up to and including 2024.08.0

Published 2024-09-05. Last modified 2026-06-17.