Scope
What the vendor says is affected
- Delinea Cloud Suite and Privileged Access Service version 23.1.2 and earlier
Versions the vendor lists as fixed
- Upgrade to Cloud Suite version 25.1 or later
Update history
What changed in later vendor updates
SecurityAlert records field-level changes from the point we begin following a bulletin. Earlier vendor changes may not have a field-by-field record.
- The vendor changed the advisory title.
- The vendor changed the advisory summary.
- The vendor changed the advisory ID.
- Added CVEs: CVE-2025-12812.
- Removed CVEs: CVE-2025-12810.
- Added affected products: Delinea Cloud Suite and Privileged Access Service version 23.1.2 and earlier.
- Removed affected products: Delinea Secret Server on-prem versions 11.8.1, 11.9.6, and 11.9.25.
- Added fixed versions: Upgrade to Cloud Suite version 25.1 or later.
- Removed fixed versions: Upgrade to Secret Server version 11.9.47 or later The secret will remain checked out when the password change fails..
- The vendor changed its remediation guidance.
Timeline
When this advisory changed
Published by DelineaThe publication date reported by the vendor.
Added to SecurityAlertWe collected the advisory from the official source.
Confirmed at the sourceOur collector saw this advisory during a later source check.
Vulnerabilities
CVEs named in this advisory