All 4 CVE vulnerabilities found in Vault Enterprise, with AI-generated Chinese analysis, references, and POCs.
Vendor: HashiCorp
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2024-2877 | Vault Enterprise Leaks Sensitive HTTP Request Headers in the Audit Log When Deployed With a Performance Standby Node CWE-532 | 5.5 | Medium | 2024-04-30 |
| CVE-2023-3775 | Vault Enterprise's Sentinel RGP Policies Allowed For Cross-Namespace Denial of Service CWE-266 | 4.2 | Medium | 2023-09-28 |
| CVE-2023-3774 | Vault Enterprise Namespace Creation May Lead to Denial of Service CWE-248 | 4.9 | Medium | 2023-07-28 |
| CVE-2023-2197 | Vault Enterprise Vulnerable to Padding Oracle Attacks When Using a CBC-based Encryption Mechanism with a HSM CWE-326 | 2.5 | Low | 2023-05-01 |
All 4 known CVE vulnerabilities affecting Vault Enterprise with full Chinese analysis, references, and POCs where available.