FAIL › dossier
Sentry
PRODUCT· dossier confidence 0%
Sentry is an error tracking and performance monitoring tool that has suffered multiple critical vulnerabilities, including remote code execution and authentication bypasses, requiring strict patch management and configuration hardening.
PROFILE
Categorysecurity softwareWhat they doSentry is an error tracking and performance monitoring tool.
SECURITY POSTURE
The product has a history of critical and high-severity vulnerabilities, including remote code execution and authentication bypasses, indicating a need for rigorous patching and configuration hardening.
Notable failures
- CVE-2026-10520: remote unauthenticated root access via command injection
- CVE-2023-38035: Apache HTTPD configuration bypassed authentication controls
- CVE-2026-42354: unspecified critical vulnerability
Patterns: unpatched edge-device RCEs; insufficiently restrictive web server configurations
FAILURE HISTORY · 4
| DATE | EVENT | SEV | SUMMARY |
|---|---|---|---|
| 2026-06-11 | CVE-2026-10520 | high | Ivanti Sentry allows remote unauthenticated root access via command injection when appliances are unmanaged and externally reachable. |
| 2023-08-22 | CVE-2023-38035 | critical | Ivanti Sentry's insufficiently restrictive Apache HTTPD configuration allowed attackers to bypass authentication controls on its administrative interface. |
| 2026-05-08 | CVE-2026-42354 | critical | CVE-2026-42354: Sentry is an error tracking and performance monitoring tool. From version 21.12. |
| 2026-05-08 | CVE-2026-42354 | critical | CVE-2026-42354: Sentry is an error tracking and performance monitoring tool. From version 21.12. |
DOSSIER SOURCES
- Anduril Industries - Wikipedia · en.wikipedia.org
- Lumen Technologies - Wikipedia · en.wikipedia.org
Open questions: Who owns Sentry? · Where is Sentry headquartered? · What is Sentry's company size? · What is Sentry's website URL?
DOSSIER · dex-RAG synthesis · grounded in our own collection + trusted sourcesbuilt 2026-08-26 04:28:00.318062+00:00