Skip to content

Identity & Access Management · head-to-head

Ping Identity vs WSO2

On-prem IAM/IGA/PAM/MFA: directories, federation, privileged access, SSO. Counts are scoped to this segment and the selected published-date window. WSO2 carries 6.7× the disclosed CVE volume of Ping Identity. Volume reflects disclosure practice and install base as much as code quality — read it with the severity mix. Sourced from the NIST NVD; lower counts indicate a smaller disclosed vulnerability surface — not necessarily lower risk.

01

Disclosure record

Bars are normalized per row to the larger value; the leading count is emphasized.

Metric comparison: Ping Identity versus WSO2. Each row gives the metric, Ping Identity’s count on the left and WSO2’s count on the right.
Ping IdentityMetricWSO2
18Total CVEs120
1Critical15
6High16
9Medium82
2Low7
9Open in latest71
02

Risk profile

Each severity band as a share of the vendor's own total — strips out raw volume so the profiles compare directly.

Ping Identity

5.6% critical
Critical
15.6%
High
633.3%
Medium
950.0%
Low
211.1%

WSO2

12.5% critical
Critical
1512.5%
High
1613.3%
Medium
8268.3%
Low
75.8%
03

Recent activity

Latest in-window disclosures per vendor, newest first. Each ID links to its NVD record.

Ping Identity

Recent CVEs affecting Ping Identity
CVESeverityCVSSPublished
CVE-2024-22477(opens NVD record)Low
1.8
Jul 9, 2024
CVE-2024-22377(opens NVD record)Medium
5.3
Jul 9, 2024
CVE-2023-40545(opens NVD record)High
8.8
Feb 6, 2024
CVE-2023-36496(opens NVD record)High
7.7
Feb 1, 2024
CVE-2023-39219(opens NVD record)High
7.5
Oct 25, 2023
CVE-2023-37283(opens NVD record)High
8.1
Oct 25, 2023

WSO2

Recent CVEs affecting WSO2
CVESeverityCVSSPublished
CVE-2026-5430(opens NVD record)Critical
10.0
Aug 6, 2026
CVE-2026-1728(opens NVD record)Critical
9.8
Aug 6, 2026
CVE-2026-0637(opens NVD record)Medium
4.4
Aug 6, 2026
CVE-2025-15039(opens NVD record)Critical
9.4
Aug 6, 2026
CVE-2025-14779(opens NVD record)Low
3.8
Aug 6, 2026
CVE-2025-13909(opens NVD record)Medium
4.3
Aug 6, 2026

Track new CVEs for these vendors

Get an email the moment a new vulnerability is disclosed for the products you rely on.

Get alerts