Security Advisory

CVE-2024-0831

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2024-02-01 01:41:33
Last updated 2025-02-13 17:27:29
Assigner HashiCorp
State PUBLISHED

Description

Vault and Vault Enterprise (“Vault”) may expose sensitive information when enabling an audit device which specifies the `log_raw` option, which may log sensitive information to other audit devices, regardless of whether they are configured to use `log_raw`.