CNNVD-202512-1760 Information

CNNVD ID

CNNVD-202512-1760

CVE-2025-67505

  • CNNVD Published: 2025-12-10

Description (Chinese)

Okta Java Management SDK是Okta, Inc开源的一个Java开发工具包。 Okta Java Management SDK 11.0.0版本至20.0.0版本存在竞争条件问题漏洞,该漏洞源于使用ApiClient类的并发请求可能导致竞争条件,可能影响请求响应。

Description (English)

Okta Java Management SDK is a Java development toolkit for Okta, Inc Open Source. There is a gap in competition conditions in Okta Java Management SDK 11.0.0 to 20.0.0, which stems from the fact that the use of the ApiClent type of concurrent requests may lead to competitive conditions that may affect the response to requests.

Hazard Level

Medium

Vulnerability Type

竞争条件问题

Affected Vendor

Okta

Published

2025-12-10

Last Modified

2026-02-24

References

https://github.com/okta/okta-sdk-java/security/advisories/GHSA-j5gq-897m-2rff https://github.com/okta/okta-sdk-java/commit/abf4f128a0441f90cb7efcdcf4bde1aef8703243 https://access.redhat.com/security/cve/cve-2025-67505

Patch

https://github.com/okta/okta-sdk-java/releases

Share on: