CVE-2026-4525
HIGH SEVERITYCVSS Score & Metrics
Base Score
7.5 / 10
Vector String
CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H
Vulnerability Description
If a Vault auth mount is configured to pass through the "Authorization" header, and the "Authorization" header is used to authenticate to Vault, Vault forwarded the Vault token to the auth plugin backend. Fixed in 2.0.0, 1.21.5, 1.20.10, and 1.19.16.
Vulnerability Details
Published Date
Last Modified
CWE ID
CWE-201
Source
NVD
Vendor
go
Product
github.com/hashicorp/vault
Discussion (0)
Add Comment
No comments yet. Be the first!