VDB
Sign up
HIGH7.5

GHSA-72gw-fmmr-c4r4

HashiCorp Vault May Expose Tokens to Auth Plugins Due to Incorrect Header Sanitization

Details

If a Vault auth mount is configured to pass through the "Authorization" header, and the "Authorization" header is used to authenticate to Vault, Vault forwarded the Vault token to the auth plugin backend. Fixed in 2.0.0, 1.21.5, 1.20.10, and 1.19.16.

Are you affected?

Enter the version of the package you're using.

Affected packages

Go/github.com/hashicorp/vault
Introduced in: 0.11.2

No fixed version published yet for github.com/hashicorp/vault (go modules). Pin to a known-safe version or switch to an alternative.

References