Beveiligingsadvies

CVE-2026-5051

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2026-07-01 17:10:56
Laatst bijgewerkt 2026-07-01 17:54:43
Toegewezen door HashiCorp
CVSS-score 4.4
Status PUBLISHED

Beschrijving

HashiCorp Vault and Vault Enterprise prior to 2.0.1 audit device validation logic did not consistently apply plugin directory protections when the legacy file audit path option was used. This vulnerability (CVE-2026-5051) is fixed in 2.0.1, 1.21.6, 1.20.11, and 1.19.17.