CVE Tools

Pingidentity

21 CVEs tracked since 2022. Since Apr 2022, none of them reached CISA KEV.

Pingidentity CVEs per month

Apr 2022 to Oct 2023. Point at a month, or focus the strip and use the arrow keys.
Pingidentity CVEs per month, with the share now in CISA KEV
MonthCVEsIn CISA KEV
2022-0440
2022-05null or fewer
2022-0660
2022-07null or fewer
2022-08null or fewer
2022-09null or fewer
2022-10null or fewer
2022-11null or fewer
2022-12null or fewer
2023-01null or fewer
2023-02null or fewer
2023-03null or fewer
2023-0460
2023-05null or fewer
2023-06null or fewer
2023-07null or fewer
2023-08null or fewer
2023-09null or fewer
2023-1050

Products

The products that kept showing up in Pingidentity's monthly top three, with their CVEs summed over those months.

  1. Pingfederate62 months
  2. Pingid Integration For Windows Login62 months
  3. Pingid21 month
  4. Pingid Integration Kit21 month
  5. Pingid Windows Login21 month
  6. Desktop11 month
  7. Pingid Integration For Mac Login11 month
  8. Pingid Radius Pcv11 month
  9. Pingone Mfa Integration Kit11 month

Latest CVEs

The 15 most recently published vulnerabilities affecting Pingidentity.

  1. CVE-2024-22377PingFederate Runtime Node Path Traversal5.3
  2. CVE-2024-22477PingFederate OIDC Policy Management Editor Cross-Site Scripting1.8
  3. CVE-2023-40545PingFederate OAuth client_secret_jwt Authentication Bypass8.8
  4. CVE-2023-36496Delegated Admin Virtual Attribute Provider Privilege Escalation7.7
  5. CVE-2023-34085User Attribute Disclosure via DynamoDB Data Stores2.6
  6. CVE-2023-39219Admin Console Denial of Service via Java class enumeration7.5
  7. CVE-2023-37283Authentication Bypass via HTML Form & Identifier First Adapter8.1
  8. CVE-2023-39930PingFederate PingID Radius PCV Authentication Bypass7.5
  9. CVE-2023-39231PingFederate PingOne MFA IK Device Pairing Second Factor Authentication Bypass7.3
  10. CVE-2022-40724Cross-Site Request Forgery on PingFederate Local Identity Profiles Endpoint.6.4
  11. CVE-2022-40723Configuration-based MFA Bypass in PingID RADIUS PCV.6.5
  12. CVE-2022-40725PingID Desktop PIN attempt lockout bypass.7.3
  13. CVE-2022-40722Misconfiguration of RSA padding for offline MFA in the PingID Adapter for PingFederate.7.7
  14. CVE-2022-23721PingID integration for Windows login duplicate username collision.3.8
  15. CVE-2018-25084Ping Identity Self-Service Account Manager SSAMController.java cross site scripting3.5

The record

Peak rank
#114 in Apr 2023
Busiest month shown
Jun 2022, 6 CVEs
Months with a KEV entry
0 since Apr 2022
Monthly snapshots
4 since 2022
Pingidentity's full record, month by month

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store