CVE-2024-0831
EUVD-2024-073201.02.2024, 02:15
Vault and Vault Enterprise (“Vault”) may expose sensitive information when enabling an audit device which specifies the `log_raw` option, which may log sensitive information to other audit devices, regardless of whether they are configured to use `log_raw`.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| hashicorp | vault | 1.15.0 ≤ 𝑥 < 1.15.5 |
| hashicorp | vault | 1.15.0 ≤ 𝑥 < 1.15.5 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References