Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-rx9v-2fjr-mhx5

Опубликовано: 01 июл. 2026
Источник: github
Github: Не прошло ревью
CVSS3: 4.4

Описание

HashiCorp Vault and Vault Enterprise prior to 2.0.1 audit device validation logic did not consistently apply plugin directory protections when the legacy file audit path option was used.

This vulnerability (CVE-2026-5051) is fixed in 2.0.1, 1.21.6, 1.20.11, and 1.19.17.

HashiCorp Vault and Vault Enterprise prior to 2.0.1 audit device validation logic did not consistently apply plugin directory protections when the legacy file audit path option was used.

This vulnerability (CVE-2026-5051) is fixed in 2.0.1, 1.21.6, 1.20.11, and 1.19.17.

EPSS

Процентиль: 20%
0.00278
Низкий

4.4 Medium

CVSS3

Дефекты

CWE-22

Связанные уязвимости

CVSS3: 4.4
redhat
около 1 месяца назад

HashiCorp Vault and Vault Enterprise prior to 2.0.1 audit device validation logic did not consistently apply plugin directory protections when the legacy file audit path option was used. This vulnerability (CVE-2026-5051) is fixed in 2.0.1, 1.21.6, 1.20.11, and 1.19.17.

CVSS3: 4.4
nvd
около 1 месяца назад

HashiCorp Vault and Vault Enterprise prior to 2.0.1 audit device validation logic did not consistently apply plugin directory protections when the legacy file audit path option was used. This vulnerability (CVE-2026-5051) is fixed in 2.0.1, 1.21.6, 1.20.11, and 1.19.17.

EPSS

Процентиль: 20%
0.00278
Низкий

4.4 Medium

CVSS3

Дефекты

CWE-22