CVE-2021-32923Medium· 6.5▾ SunlitA flaw was found in the HashiCorp Vault and Vault Enterprise. The vault could allow a remote attacker to bypass security restrictions caused by a renewal logic flaw when a token lease or dynamic secret lease was renewed inside the last sec…
▾ Sunlit zone — Low / medium · no exploitation signal
impact 35.8 · likelihood 0.3 · exploitation 0
Need a working PoC? Pro members can cast a request and our team develops one — it lands right here.
Exploit-prediction probability, daily snapshots since Sep 12.
Disclosure to exploitation, from the record and what we observed since indexing it.
Disclosed via CSAF
1.4%
Last analysed / modified upstream
7.4 → 6.5
high → medium
A flaw was found in the HashiCorp Vault and Vault Enterprise. The vault could allow a remote attacker to bypass security restrictions caused by a renewal logic flaw when a token lease or dynamic secret lease was renewed inside the last second of its maximum TTL. By sending a specially crafted request, an attacker can bypass authentication validation and gain access to the system.
vault: Token leases incorrectly treated as non-expiring — rated Moderate by Red Hat. Released 2021-06-03, updated 2026-09-17.
Affected:
Not affected:
Refer to the advisory for fix availability.
Affected packages:
github.com/hashicorp/vault >= 1.7.0, < 1.7.2github.com/hashicorp/vault >= 1.6.0, < 1.6.5github.com/hashicorp/vault >= 0.10.0, < 1.5.9Patched in:
github.com/hashicorp/vault 1.7.2github.com/hashicorp/vault 1.6.5github.com/hashicorp/vault 1.5.9Field changes observed since this record was first indexed.
Connected by shared product, vendor, weakness, or advisory.
CVE-2021-38554Medium· 5.3vault: UI erroneously cached and exposed user-viewed secrets between sessions in a single shared browser (CVE-2021-38554)
CVE-2026-92358Medium· 6.4A flaw was found in the first broker login flow of Keycloak
CVE-2026-80110High· 8.1A flaw was found in pki-core
CVE-2026-75939High· 7.4A flaw was found in openshift/oc-mirror
CVE-2026-94184High· 8.1A stack-based buffer overflow flaw was found in fetchmail when built with NTLM support
CVE-2026-94368High· 7.1A flaw was found in the signature verification logic of noobaa-core, the core component of the NooBaa Multicloud Object Gateway