8.4
/ 10
HIGH
CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:L
Description
Okta Java Management SDK facilitates interactions with the Okta management API. In versions 11.0.0 through 20.0.0, race conditions may arise from concurrent requests using the ApiClient class. This could cause a status code or response header from one request’s response to influence another request’s response. This issue is fixed in version 20.0.1.
Basic Information
ID
CVE-2025-67505
Source
GitHub_M
Published
Dec 10, 2025 at 22:19
Affected Product
Vendor
okta
Product
okta-sdk-java
Version
>= 11.0.0, < 20.0.1
Affected Versions
okta okta-sdk-java >= 11.0.0, < 20.0.1