CVE-2025-5999
Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
01/08/2025
Last modified:
13/08/2025
Description
A privileged Vault operator with write permissions to the root namespace’s identity endpoint could escalate their own or another user’s token privileges to Vault’s root policy. Fixed in Vault Community Edition 1.20.0 and Vault Enterprise 1.20.0, 1.19.6, 1.18.11 and 1.16.22.
Impact
Base Score 3.x
7.20
Severity 3.x
HIGH
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:a:hashicorp:vault:*:*:*:*:enterprise:*:*:* | 0.10.4 (including) | 1.16.22 (excluding) |
| cpe:2.3:a:hashicorp:vault:*:*:*:*:-:*:*:* | 0.10.4 (including) | 1.20.0 (excluding) |
| cpe:2.3:a:hashicorp:vault:*:*:*:*:enterprise:*:*:* | 1.17.0 (including) | 1.18.11 (excluding) |
| cpe:2.3:a:hashicorp:vault:*:*:*:*:enterprise:*:*:* | 1.19.0 (including) | 1.19.6 (excluding) |
To consult the complete list of CPE names with products and versions, see this page



