Skip to content
COOEY

FAIL › dossier

Sentry

PRODUCT

· dossier confidence 0%

Sentry is an error tracking and performance monitoring tool that has suffered multiple critical vulnerabilities, including remote code execution and authentication bypasses, requiring strict patch management and configuration hardening.

PROFILE
Categorysecurity softwareWhat they doSentry is an error tracking and performance monitoring tool.
SECURITY POSTURE

The product has a history of critical and high-severity vulnerabilities, including remote code execution and authentication bypasses, indicating a need for rigorous patching and configuration hardening.

Notable failures
  • CVE-2026-10520: remote unauthenticated root access via command injection
  • CVE-2023-38035: Apache HTTPD configuration bypassed authentication controls
  • CVE-2026-42354: unspecified critical vulnerability
Patterns: unpatched edge-device RCEs; insufficiently restrictive web server configurations
FAILURE HISTORY · 4
DATEEVENTSEVSUMMARY
2026-06-11 CVE-2026-10520 high Ivanti Sentry allows remote unauthenticated root access via command injection when appliances are unmanaged and externally reachable.
2023-08-22 CVE-2023-38035 critical Ivanti Sentry's insufficiently restrictive Apache HTTPD configuration allowed attackers to bypass authentication controls on its administrative interface.
2026-05-08 CVE-2026-42354 critical CVE-2026-42354: Sentry is an error tracking and performance monitoring tool. From version 21.12.
2026-05-08 CVE-2026-42354 critical CVE-2026-42354: Sentry is an error tracking and performance monitoring tool. From version 21.12.
DOSSIER SOURCES
Open questions: Who owns Sentry? · Where is Sentry headquartered? · What is Sentry's company size? · What is Sentry's website URL?
DOSSIER · dex-RAG synthesis · grounded in our own collection + trusted sourcesbuilt 2026-08-26 04:28:00.318062+00:00