CVE-2026-78631: Okta Hyperdrive
Medium severity, CVSS 5.5. EPSS: 0.1% chance of exploitation in the next 30 days.
The Okta Hyperdrive Agent writes the decoded SAML bearer assertion to a local application log file at the default log level on every successful MFA completion. This insertion of sensitive information into the log file makes a live authentication credential readable by any local user with access to the log file.
Affected products
- Okta Hyperdrive: from 1.4.0, before 1.5.2 (fixed in 1.5.2)
Published 2026-09-08. Last modified 2026-09-22.