ory records
14 published records for vendor ory.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 0
- With a fix record
- 92.9%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-89 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')3
- CWE-20 Improper Input Validation2
- CWE-287 Improper Authentication1
- CWE-294 Authentication Bypass by Capture-replay1
- CWE-305 Authentication Bypass by Primary Weakness1
- CWE-755 Improper Handling of Exceptional Conditions1
The weakness classes this vendor ships most often: where to look.
CWEAll records
14 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
40Plan | CVE-2026-33494No exploit | Ory Oathkeeper has a path traversal authorization bypassory · oathkeeper · CWE-23 | Critical10.0 | — | 0.6% | Mar 26, 2026 |
35Monitor | CVE-2026-33506No exploit | DOM-Based XSS in Ory Polis Login Pageory · polis · CWE-87 | High8.8 | — | 0.4% | Mar 26, 2026 |
32Monitor | CVE-2020-15223No exploit | Ignored storage errors on token revokation in ORY Fositeory · fosite · CWE-755 | High8.0 | — | 1.6% | Sep 24, 2020 |
32Monitor | CVE-2020-15222No exploit | Replay of private_key_jwt possible in ORY Fositeory · fosite · CWE-287 | High8.1 | — | 0.9% | Sep 24, 2020 |
32Monitor | CVE-2026-33496No exploit | Ory Oathkeeper has an authentication bypass by cache key confusionory · oathkeeper · CWE-305 | High8.1 | — | 0.5% | Mar 26, 2026 |
30Monitor | CVE-2021-32701No exploit | Possible bypass of token claim validation when OAuth2 Introspection caching is enabledory · oathkeeper · CWE-863 | High7.5 | — | 1.6% | Jun 22, 2021 |
28Monitor | CVE-2026-33504No exploit | Ory Hydra has a SQL injection via forged pagination tokensory · hydra · CWE-89 | High7.2 | — | 0.4% | Mar 26, 2026 |
28Monitor | CVE-2026-33503No exploit | Ory Kratos has a SQL injection via forged pagination tokensory · kratos · CWE-89 | High7.2 | — | 0.3% | Mar 26, 2026 |
28Monitor | CVE-2026-33505No exploit | Ory Keto has a SQL injection via forged pagination tokensory · keto · CWE-89 | High7.2 | — | 0.3% | Mar 26, 2026 |
26Monitor | CVE-2026-33495No exploit | Ory Oathkeeper has an authentication bypass by usage of untrusted headerory · oathkeeper · CWE-862 | Medium6.5 | — | 0.3% | Mar 26, 2026 |
24Monitor | CVE-2019-8400No exploit | ORY Hydra before v1.0.0-rc.3+oryOS.9 has Reflected XSS via the oauth2/fallbacks/error error_hint parameter.ory · hydra · CWE-79 | Medium6.1 | — | 1.3% | Feb 17, 2019 |
21Monitor | CVE-2020-5300No exploit | Disallow replay of `private_key_jwt` by blacklisting JTIs in Hydraory · hydra · CWE-294 | Medium5.3 | — | 1.0% | Apr 6, 2020 |
19Monitor | CVE-2020-15234No exploit | Redirect URL matching ignores character casingory · fosite · CWE-20 | Medium4.8 | — | 0.8% | Oct 2, 2020 |
19Monitor | CVE-2020-15233No exploit | OAuth2 Redirect URL validity does not respect query parameters and character casing for loopback addressesory · fosite · CWE-20 | Medium4.8 | — | 0.8% | Oct 2, 2020 |
- CVE-2026-3349440Plan
Ory Oathkeeper has a path traversal authorization bypass
CriticalCVSS 10.0No exploitEPSS 1%ory · oathkeeperMar 26, 2026
- CVE-2026-3350635Monitor
DOM-Based XSS in Ory Polis Login Page
HighCVSS 8.8No exploitEPSS 0%ory · polisMar 26, 2026
- CVE-2020-1522332Monitor
Ignored storage errors on token revokation in ORY Fosite
HighCVSS 8.0No exploitEPSS 2%ory · fositeSep 24, 2020
- CVE-2020-1522232Monitor
Replay of private_key_jwt possible in ORY Fosite
HighCVSS 8.1No exploitEPSS 1%ory · fositeSep 24, 2020
- CVE-2026-3349632Monitor
Ory Oathkeeper has an authentication bypass by cache key confusion
HighCVSS 8.1No exploitEPSS 1%ory · oathkeeperMar 26, 2026
- CVE-2021-3270130Monitor
Possible bypass of token claim validation when OAuth2 Introspection caching is enabled
HighCVSS 7.5No exploitEPSS 2%ory · oathkeeperJun 22, 2021
- CVE-2026-3350428Monitor
Ory Hydra has a SQL injection via forged pagination tokens
HighCVSS 7.2No exploitEPSS 0%ory · hydraMar 26, 2026
- CVE-2026-3350328Monitor
Ory Kratos has a SQL injection via forged pagination tokens
HighCVSS 7.2No exploitEPSS 0%ory · kratosMar 26, 2026
- CVE-2026-3350528Monitor
Ory Keto has a SQL injection via forged pagination tokens
HighCVSS 7.2No exploitEPSS 0%ory · ketoMar 26, 2026
- CVE-2026-3349526Monitor
Ory Oathkeeper has an authentication bypass by usage of untrusted header
MediumCVSS 6.5No exploitEPSS 0%ory · oathkeeperMar 26, 2026
- CVE-2019-840024Monitor
ORY Hydra before v1.0.0-rc.3+oryOS.9 has Reflected XSS via the oauth2/fallbacks/error error_hint parameter.
MediumCVSS 6.1No exploitEPSS 1%ory · hydraFeb 17, 2019
- CVE-2020-530021Monitor
Disallow replay of `private_key_jwt` by blacklisting JTIs in Hydra
MediumCVSS 5.3No exploitEPSS 1%ory · hydraApr 6, 2020
- CVE-2020-1523419Monitor
Redirect URL matching ignores character casing
MediumCVSS 4.8No exploitEPSS 1%ory · fositeOct 2, 2020
- CVE-2020-1523319Monitor
OAuth2 Redirect URL validity does not respect query parameters and character casing for loopback addresses
MediumCVSS 4.8No exploitEPSS 1%ory · fositeOct 2, 2020