CVE Tools

Sentry

38 CVEs tracked. 2 of them are in CISA KEV.

This hub aggregates every CVE we track for Sentry, a product in the security products space. Use it to gauge the current risk picture and drill into individual advisories.

Sentry CVEs per month

Oct 2024 to Sep 2026. Point at a month, or focus the strip and use the arrow keys.
Sentry CVEs per month
MonthCVEs
2024-102
2024-111
2024-121
2025-011
2025-020
2025-030
2025-040
2025-050
2025-061
2025-072
2025-080
2025-090
2025-100
2025-110
2025-120
2026-010
2026-021
2026-031
2026-040
2026-052
2026-063
2026-070
2026-080
2026-092

Severity

How the 38 CVEs score on CVSS. Severity is not exploitation: KEV is counted above.

  • Critical924%
  • High1643%
  • Medium1027%
  • Low25%

Latest CVEs

The 15 most recently published vulnerabilities affecting Sentry.

  1. CVE-2026-83803Sentry: Unsafe pickle deserialization in Relocation Feature—
  2. CVE-2026-83527An Authentication Bypass vulnerability in Sentry before R10.8.2, R10.7.3 and R10.6.4 allows a remote unauthenticated attacker to gain administrative level access.8.1
  3. CVE-2026-52794Sentry: Inefficient Regular Expression Complexity in sentry7.5
  4. CVE-2026-10523An Authentication Bypass vulnerability (CWE-288) in Ivanti Sentry before the R10.5.2, R10.6.2 and R10.7.1 versions allows a remote unauthenticated attacker to create arbitrary administrative ...9.9
  5. CVE-2026-10520An OS Command Injection vulnerability in Ivanti Sentry before the R10.5.2, R10.6.2 and R10.7.1 versions allows a remote unauthenticated user to achieve root-level remote code execution10.0
  6. CVE-2021-47935Sentry 8.2.0 Remote Code Execution via Pickle Deserialization8.8
  7. CVE-2026-42354Sentry: Improper authentication on SAML SSO process allows user identity linking9.1
  8. CVE-2026-26004Sentry allows unauthorized access to event data across organizational boundaries6.5
  9. CVE-2026-27197Sentry: Improper Authentication on SAML SSO process allows user identity linking9.1
  10. CVE-2023-39338Enables an authenticated user (enrolled device) to access a service protected by Sentry even if they are not authorized according to the sentry policy to access that service. It does not enable the...6.8
  11. CVE-2025-53099Sentry Missing Invalidation of Authorization Codes During OAuth Exchange and Revocation7.5
  12. CVE-2025-53073In Sentry 25.1.0 through 25.5.1, an authenticated attacker can access a project's issue endpoint and perform unauthorized actions (such as adding a comment) without being a member of the project's ...4.2
  13. CVE-2025-22146Improper authentication on SAML SSO process allows user impersonation in sentry9.1
  14. CVE-2024-8540Insecure permissions in Ivanti Sentry before versions 9.20.2 and 10.0.2 or 10.1.0 allow a local authenticated attacker to modify sensitive application components.8.8
  15. CVE-2024-53253Sentry's improper error handling leaks Application Integration Client Secret5.3

Product grouping is registry-driven, with AI assist and human review. How it works

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store