The full story
Improper Input Sanitization in Okta Access Gateway LDAP Datastore Filter Interpolation CVE-2026-78579 - Sep 8, 2026. A security weakness in Okta is being tracked as CVE-2026-78579. The Okta Access Gateway does not sanitize SAML assertion attribute values before interpolating them into LDAP search filters in the LDAP datastore configuration.
To remediate this vulnerability, upgrade the Okta Access Gateway appliance to version 2026 9 1 or greater.
What the reporting is based on
Improper Input Sanitization in Okta Access Gateway LDAP Datastore Filter Interpolation CVE-2026-78579 - Sep 8, 2026
The Okta Access Gateway does not sanitize SAML assertion attribute values before interpolating them into LDAP search filters in the LDAP datastore configuration. To remediate this vulnerability, upgrade the Okta Access Gateway appliance to version 2026 9 1 or greater.
Open sourceReporting ends here. The sections below are CyberDeltaForce analysis and defender-focused interpretation.
What this means
Risk depends on whether Okta and the affected component are deployed and reachable. Exposure, privilege, business criticality and compensating controls should determine remediation priority.
What security teams should check now
- Inventory Okta deployments and confirm whether the affected component and vulnerable release are present.
- Apply the vendor patch or mitigation for CVE-2026-78579 and validate the affected path after remediation.
What is not yet confirmed
- Available reporting does not currently indicate exploitation, but that can change as vendor, government or threat-intelligence reporting develops.