VDB

CVE-2021-27400

CVE-2021-27400 PUBLISHED

HashiCorp Vault and Vault Enterprise Cassandra integrations (storage backend and database secrets engine plugin) did not validate TLS certificates when connecting to Cassandra clusters. Fixed in 1.6.4 and 1.7.1

EPSS 0.14% · 33.4th percentile

Risk Scores

EPSS Score
0.14%
33.4th percentile

Affected Products

VendorProductVersions
Bitnamivault0, 1.7.0
Bitnamivault0, 1.7.0

Timeline

  • Apr 22, 2021 CVE Published
  • Apr 27, 2021 EPSS Score
  • Jun 30, 2021 EPSS Score
  • Aug 31, 2021 EPSS Score
  • Nov 2, 2021 EPSS Score
  • Jan 6, 2022 EPSS Score
  • Feb 4, 2022 EPSS Score
  • Mar 6, 2022 EPSS Score
  • Apr 1, 2022 EPSS Score
  • May 7, 2022 EPSS Score
  • Jul 8, 2022 EPSS Score
  • Sep 10, 2022 EPSS Score
Open in Interactive Console →
$ Console Community · 100/wk Open console ›