← Zurück zur CVE-Suche

CVE-2026-5051

HashiCorp Vault

Beschreibung

HashiCorp Vault and Vault Enterprise prior to 2.0.1 audit device validation logic did not consistently apply plugin directory protections when the legacy file audit path option was used. This vulnerability (CVE-2026-5051) is fixed in 2.0.1, 1.21.6, 1.20.11, and 1.19.17.

CVSS 4.4EPSS 0.27799999999999997%Risiko 0.45
Quelle öffnen
Veröffentlicht
2026-07-01 18:16:36
Betroffene Versionen
<2.0.1, <1.21.6, <1.20.11, <1.19.17
Typ
Kritische Software
Vektor
CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:U/C:H/I:N/A:N