Description
OpenBao is an open source identity-based secrets management system. Prior to 2.5.5, OpenBao users granted capabilities on /sys/namespaces/root within a non-root namespace could exploit special handling of the literal root path in namespace canonicalization. The /sys/namespaces/* endpoint family can resolve its containing namespace through a path prefix or X-Vault-Namespace header. ACL checks occurred before root canonicalized to an empty path, causing /sys/namespaces/root to resolve to the system backend's containing namespace and allowing permitted lookups, deletion, locking, or custom metadata changes against that direct containing namespace. The root namespace and arbitrary unrelated namespaces are not affected, and available operations depend on the capabilities granted on the path and subpaths such as /api-lock. This issue is fixed in version 2.5.5.
Published: 2026-09-15
Score: 2.3 Low
EPSS: < 1% Very Low
KEV: No
Impact: Unauthorized Namespace Access
Action: Patch
AI Analysis

Impact

OpenBao is an open‑source identity‑based secrets management system that, before version 2.5.5, allowed users who had been granted capabilities on the path /sys/namespaces/root within a non‑root namespace to manipulate the system backend's containing namespace. By exploiting how the literal root path is handled during namespace canonicalization, an attacker can cause /sys/namespaces/root to resolve to the system backend’s containing namespace rather than the actual root. This allows the attacker to perform operations—such as lookups, deletions, locking, or modifying custom metadata—against that namespace, provided they hold the necessary capabilities on the path and its subpaths (e.g. /api‑lock). Root or unrelated namespaces are not affected, and the exploit’s effect depends on the specific capabilities granted. The issue was fixed with the 2.5.5 release.

Affected Systems

Vendors affected are OpenBao, version 2.5.4 and earlier, as well as any 2.5.x build prior to v2.5.5. The fix was introduced in release v2.5.5, and subsequent releases such as v2.6.0 also contain the patch. Any deployment running a 2.5.x roll that does not include the 2.5.5 hot‑fix remains vulnerable.

Risk and Exploitability

The CVSS score of 2.3 indicates low severity. The EPSS score is less than 1%, indicating a very low probability of exploitation. The flaw requires the attacker already have capabilities on the /sys/namespaces/root path inside a non‑root namespace, so it is only exploitable where ACLs are misconfigured or permissive. It is not listed in CISA’s KEV catalog, but organizations should still address it promptly to prevent privilege escalation that could compromise sensitive namespaces.

Generated by OpenCVE AI on September 20, 2026 at 15:57 UTC.

Remediation

No solution or workaround provided in the CVE record.

OpenCVE Recommended Actions

  • Upgrade OpenBao to version 2.5.5 or later.
  • Review and tighten ACLs to remove unnecessary permissions on /sys/namespaces/root paths in non‑root namespaces.
  • Verify that no root namespace operations are allowed from within non‑root namespaces and remove any such policies.

Generated by OpenCVE AI on September 20, 2026 at 15:57 UTC.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
Github GHSA Github GHSA GHSA-mwr2-wmgp-crj6 OpenBao's System Backend allows Unauthorized Management of the containing Namespace
History

Tue, 15 Sep 2026 18:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Tue, 15 Sep 2026 17:00:00 +0000

Type Values Removed Values Added
First Time appeared Openbao
Openbao openbao
Vendors & Products Openbao
Openbao openbao

Tue, 15 Sep 2026 15:45:00 +0000

Type Values Removed Values Added
Description OpenBao is an open source identity-based secrets management system. Prior to 2.5.5, OpenBao users granted capabilities on /sys/namespaces/root within a non-root namespace could exploit special handling of the literal root path in namespace canonicalization. The /sys/namespaces/* endpoint family can resolve its containing namespace through a path prefix or X-Vault-Namespace header. ACL checks occurred before root canonicalized to an empty path, causing /sys/namespaces/root to resolve to the system backend's containing namespace and allowing permitted lookups, deletion, locking, or custom metadata changes against that direct containing namespace. The root namespace and arbitrary unrelated namespaces are not affected, and available operations depend on the capabilities granted on the path and subpaths such as /api-lock. This issue is fixed in version 2.5.5.
Title OpenBao's System Backend allows Unauthorized Management of the containing Namespace
Weaknesses CWE-285
References
Metrics cvssV4_0

{'score': 2.3, 'vector': 'CVSS:4.0/AV:N/AC:L/AT:P/PR:L/UI:N/VC:N/VI:L/VA:L/SC:N/SI:N/SA:N'}


cve-icon MITRE

Status: PUBLISHED

Assigner: GitHub_M

Published:

Updated: 2026-09-15T18:02:19.196Z

Reserved: 2026-06-17T14:40:28.379Z

Link: CVE-2026-55775

cve-icon Vulnrichment

Updated: 2026-09-15T17:38:15.469Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2026-09-15T16:17:16.073

Modified: 2026-09-25T14:23:59.847

Link: CVE-2026-55775

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-09-20T16:00:14Z

Weaknesses