Vulnerability Database

318,389

Total vulnerabilities in the database

CVE-2024-2228

This vulnerability allows an authenticated user to perform a Lifecycle Manager flow or other QuickLink for a target user outside of the defined QuickLink Population.

  • Published: Mar 22, 2024
  • Updated: Nov 13, 2025
  • CVE: CVE-2024-2228
  • Severity: High
  • Exploit:

CVSS v3:

  • Severity: High
  • Score: 7.1
  • AV:N/AC:H/PR:L/UI:R/S:U/C:H/I:H/A:H

CWEs:

Software From Fixed in
sailpoint / identityiq - 8.1
sailpoint / identityiq 8.1-patch1 8.1-patch1.x
sailpoint / identityiq 8.1-patch2 8.1-patch2.x
sailpoint / identityiq 8.1-patch3 8.1-patch3.x
sailpoint / identityiq 8.1-patch4 8.1-patch4.x
sailpoint / identityiq 8.1-patch5 8.1-patch5.x
sailpoint / identityiq 8.1-patch6 8.1-patch6.x
sailpoint / identityiq 8.2 8.2.x
sailpoint / identityiq 8.2-patch1 8.2-patch1.x
sailpoint / identityiq 8.2-patch2 8.2-patch2.x
sailpoint / identityiq 8.2-patch4 8.2-patch4.x
sailpoint / identityiq 8.2-patch5 8.2-patch5.x
sailpoint / identityiq 8.3 8.3.x
sailpoint / identityiq 8.3-patch1 8.3-patch1.x
sailpoint / identityiq 8.3-patch2 8.3-patch2.x
sailpoint / identityiq 8.4 8.4.x