Количество 4
Количество 4
CVE-2025-11621
Vault and Vault Enterprise’s (“Vault”) AWS Auth method may be susceptible to authentication bypass if the role of the configured bound_principal_iam is the same across AWS accounts, or uses a wildcard. This vulnerability, CVE-2025-11621, is fixed in Vault Community Edition 1.21.0 and Vault Enterprise 1.21.0, 1.20.5, 1.19.11, and 1.16.27
ROS-20251125-05
Уязвимость vault
GHSA-9g4h-h484-3578
HashiCorp Vault and Vault Enterprise's AWS Auth method may be susceptible to authentication bypass
ROS-20251128-03
Множественные уязвимости vault
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2025-11621 Vault and Vault Enterprise’s (“Vault”) AWS Auth method may be susceptible to authentication bypass if the role of the configured bound_principal_iam is the same across AWS accounts, or uses a wildcard. This vulnerability, CVE-2025-11621, is fixed in Vault Community Edition 1.21.0 and Vault Enterprise 1.21.0, 1.20.5, 1.19.11, and 1.16.27 | CVSS3: 8.1 | 0% Низкий | около 1 месяца назад | |
ROS-20251125-05 Уязвимость vault | CVSS3: 8.1 | 0% Низкий | 6 дней назад | |
GHSA-9g4h-h484-3578 HashiCorp Vault and Vault Enterprise's AWS Auth method may be susceptible to authentication bypass | CVSS3: 8.1 | 0% Низкий | около 1 месяца назад | |
ROS-20251128-03 Множественные уязвимости vault | CVSS3: 8.1 | 3 дня назад |
Уязвимостей на страницу