CVE-2020-10661
HashiCorp Vault and Vault Enterprise versions 0.11.0 through 1.3.3 may, under certain circumstances, have existing neste
HashiCorp Vault and Vault Enterprise versions 0.11.0 through 1.3.3 may, under certain circumstances, have existing nested-path policies grant access to Namespaces created after-the-fact. Fixed in 1.3.4.
CRITICAL · CVSS 9.1
EPSS 0.00368
Schedule remediation
- CVSS base score ≥ 7.0
Sigma rules1
YARA rules0