CVE-2025-5999

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
01/08/2025
Last modified:
13/08/2025

Description

A privileged Vault operator with write permissions to the root namespace’s identity endpoint could escalate their own or another user’s token privileges to Vault’s root policy. Fixed in Vault Community Edition 1.20.0 and Vault Enterprise 1.20.0, 1.19.6, 1.18.11 and 1.16.22.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:hashicorp:vault:*:*:*:*:enterprise:*:*:* 0.10.4 (including) 1.16.22 (excluding)
cpe:2.3:a:hashicorp:vault:*:*:*:*:-:*:*:* 0.10.4 (including) 1.20.0 (excluding)
cpe:2.3:a:hashicorp:vault:*:*:*:*:enterprise:*:*:* 1.17.0 (including) 1.18.11 (excluding)
cpe:2.3:a:hashicorp:vault:*:*:*:*:enterprise:*:*:* 1.19.0 (including) 1.19.6 (excluding)