Description
HashiCorp Vault Enterprise’s Sentinel EGP policy feature incorrectly allowed requests to be processed in parent and sibling namespaces. Fixed in 1.5.6 and 1.6.1.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2020-23127 | HashiCorp Vault Enterprise’s Sentinel EGP policy feature incorrectly allowed requests to be processed in parent and sibling namespaces. Fixed in 1.5.6 and 1.6.1. |
References
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-04T17:02:07.977Z
Reserved: 2020-12-14T00:00:00.000Z
Link: CVE-2020-35453
No data.
Status : Modified
Published: 2020-12-17T05:15:10.860
Modified: 2024-11-21T05:27:18.700
Link: CVE-2020-35453
OpenCVE Enrichment
No data.
Weaknesses
EUVD