All 2 CVE vulnerabilities found in hashi-vault-js, with AI-generated Chinese analysis, references, and POCs.
Vendor: kyndryl-open-source
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2026-55102 | hashi-vault-js: Vault token and secret values exposed in thrown errors CWE-209 | 5.8 | Medium | 2026-09-14 |
| CVE-2026-55100 | hashi-vault-js has a path traversal and query parameter injection CWE-23 | 8.7 | High | 2026-07-31 |
All 2 known CVE vulnerabilities affecting hashi-vault-js with full Chinese analysis, references, and POCs where available.