VulnSea

github.com/openbao/openbao vulnerabilities

CVEs whose affected-version data names the github.com/openbao/openbao package (go). Each record lists the affected and patched versions; check a specific version with the dependency checker or POST /api/sbom.

25 CVEsRSS

CVE-2026-45808High
1mo ago

OpenBao is an open source identity-based secrets management system

OpenBao is an open source identity-based secrets management system. Prior to version 2.5.4, OpenBao's namespaces provide multi-tenant separation. A tenant who intentionally leaks lease identifiers can have their lease and underlying cred…

Twilightopenbao · github.com/openbao/openbaoEPSS 0.31%via NVD
CVE-2026-46358Medium
1mo ago

OpenBao is an open source identity-based secrets management system

OpenBao is an open source identity-based secrets management system. Prior to version 2.5.4, OpenBao's inline auth functionality incorrectly redacted audit log entries, resulting in non-auth headers being removed and auth-related headers …

Sunlitopenbao · github.com/openbao/openbaoEPSS 0.23%via NVD
CVE-2026-46405Medium· 5.3
1mo ago

OpenBao is an open source identity-based secrets management system

OpenBao is an open source identity-based secrets management system. Prior to version 2.5.4, in OpenBao's Kerberos auth method on the `GET` handler, or when an `Authorization: Negotiate` header is supplied, the response is includes a `log…

Sunlitopenbao · github.com/openbao/openbaoEPSS 0.36%via NVD
CVE-2026-42186Low
4mo ago

OpenBao's Namespace Deletion May Not Delete Data Properly

OpenBao's Namespace Deletion May Not Delete Data Properly

Sunlitopenbao · github.com/openbao/openbaoEPSS 0.25%via OSV
CVE-2026-39396Low· 3.1
5mo ago

OpenBao: Decompression Bomb via Unbounded Copy in OCI Plugin Extraction (DoS)

OpenBao: Decompression Bomb via Unbounded Copy in OCI Plugin Extraction (DoS)

Sunlitopenbao · github.com/openbao/openbaoEPSS 0.22%via OSV
CVE-2026-40264Low
5mo ago

OpenBao's Token Store Allows Cross-Namespace Renewal, Revocation

OpenBao's Token Store Allows Cross-Namespace Renewal, Revocation

Sunlitopenbao · github.com/openbao/openbaoEPSS 0.30%via OSV
CVE-2026-39388Low· 3.1
5mo ago

OpenBao's Certificate Authentication Allows Token Renewal With Different Certificate

OpenBao's Certificate Authentication Allows Token Renewal With Different Certificate

Sunlitopenbao · github.com/openbao/openbaoEPSS 0.10%via OSV
CVE-2026-39946Medium· 4.9
5mo ago

OpenBao's SQL Injection in PostgreSQL database secrets engine

OpenBao's SQL Injection in PostgreSQL database secrets engine

Sunlitopenbao · github.com/openbao/openbaoEPSS 0.24%via OSV
CVE-2026-33758Critical
6mo ago

OpenBao has Reflected XSS in its OIDC authentication error message

OpenBao has Reflected XSS in its OIDC authentication error message

Midnightopenbao · github.com/openbao/openbaoEPSS 0.29%via OSV
CVE-2026-33757Critical· 9.6
6mo ago

OpenBao lacks user confirmation for OIDC direct callback mode

OpenBao lacks user confirmation for OIDC direct callback mode

Midnightopenbao · github.com/openbao/openbaoEPSS 0.41%via OSV
CVE-2025-64761High
10mo ago

OpenBao is Vulnerable to Privileged Operator Identity Group Root Escalation

OpenBao is Vulnerable to Privileged Operator Identity Group Root Escalation

Twilightopenbao · github.com/openbao/openbaoEPSS 0.36%via OSV
CVE-2025-62705Medium
11mo ago

OpenBao and Vault Leak []byte Fields in Audit Logs

OpenBao and Vault Leak []byte Fields in Audit Logs

Sunlitopenbao · github.com/openbao/openbaoEPSS 0.31%via OSV
CVE-2025-62513Medium
11mo ago

OpenBao leaks HTTPRawBody in Audit Logs

OpenBao leaks HTTPRawBody in Audit Logs

Sunlitopenbao · github.com/openbao/openbaoEPSS 0.29%via OSV
CVE-2025-59043High· 7.5
11mo ago

OpenBao has potential Denial of Service vulnerability when processing malicious unauthenticated JSON requests

OpenBao has potential Denial of Service vulnerability when processing malicious unauthenticated JSON requests

Twilightopenbao · github.com/openbao/openbaoEPSS 0.69%via OSV
CVE-2025-54997Critical· 9.1
1y ago

Privileged OpenBao Operator May Execute Code on the Underlying Host

Privileged OpenBao Operator May Execute Code on the Underlying Host

Midnightopenbao · github.com/openbao/openbaoEPSS 0.38%via OSV
CVE-2025-54996High· 7.2
1y ago

OpenBao Root Namespace Operator May Elevate Token Privileges

OpenBao Root Namespace Operator May Elevate Token Privileges

Twilightopenbao · github.com/openbao/openbaoEPSS 0.31%via OSV
CVE-2025-55003Medium· 5.7
1y ago

OpenBao Login MFA Bypass of Rate Limiting and TOTP Token Reuse

OpenBao Login MFA Bypass of Rate Limiting and TOTP Token Reuse

Sunlitopenbao · github.com/openbao/openbaoEPSS 0.20%via OSV
CVE-2025-54998Medium· 5.3
1y ago

OpenBao Userpass and LDAP User Lockout Bypass

OpenBao Userpass and LDAP User Lockout Bypass

Sunlitopenbao · github.com/openbao/openbaoEPSS 0.21%via OSV
CVE-2025-54999Low· 3.7
1y ago

OpenBao has a Timing Side-Channel in the Userpass Auth Method

OpenBao has a Timing Side-Channel in the Userpass Auth Method

Sunlitopenbao · github.com/openbao/openbaoEPSS 0.19%via OSV
CVE-2025-55000Medium· 6.5
1y ago

OpenBao TOTP Secrets Engine Code Reuse

OpenBao TOTP Secrets Engine Code Reuse

Sunlitopenbao · github.com/openbao/openbaoEPSS 0.21%via OSV
CVE-2025-55001Medium· 6.5
1y ago

OpenBao LDAP MFA Enforcement Bypass When Using Username As Alias

OpenBao LDAP MFA Enforcement Bypass When Using Username As Alias

Sunlitopenbao · github.com/openbao/openbaoEPSS 0.22%via OSV
CVE-2025-52894Medium
1y ago

OpenBao allows cancellation of root rekey and recovery rekey operations without authentication

OpenBao allows cancellation of root rekey and recovery rekey operations without authentication

Sunlitopenbao · github.com/openbao/openbaoEPSS 0.37%via OSV
CVE-2024-8185High· 7.5
1y ago

Hashicorp Vault vulnerable to denial of service through memory exhaustion

Hashicorp Vault vulnerable to denial of service through memory exhaustion

Twilighthashicorp · github.com/hashicorp/vaultEPSS 0.48%via OSV
CVE-2024-9180High· 7.2
1y ago

Vault Community Edition privilege escalation vulnerability

Vault Community Edition privilege escalation vulnerability

Twilighthashicorp · github.com/hashicorp/vaultEPSS 0.53%via OSV
CVE-2024-7594High· 7.5
1y ago

Vault SSH Secrets Engine Configuration Did Not Restrict Valid Principals By Default

Vault SSH Secrets Engine Configuration Did Not Restrict Valid Principals By Default

Twilighthashicorp · github.com/hashicorp/vaultEPSS 0.27%via OSV
github.com/openbao/openbao vulnerabilities (CVEs) · VulnSea