CVE-2021-38554
13.08.2021, 16:15
HashiCorp Vault and Vault Enterprises UI erroneously cached and exposed user-viewed secrets between sessions in a single shared browser. Fixed in 1.8.0 and pending 1.7.4 / 1.6.6 releases.Enginsight
Vendor | Product | Version |
---|---|---|
hashicorp | vault | 𝑥 < 1.8.0 |
hashicorp | vault | 𝑥 < 1.8.0 |
𝑥
= Vulnerable software versions
References