CVE-2025-6000 PUBLISHED

A privileged Vault operator within the root namespace with write permission to {{sys/audit}} may obtain code execution on the underlying host if a plugin directory is set in Vault’s configuration. Fixed in Vault Community Edition 1.20.1 and Vault Enterprise 1.20.1, 1.19.7, 1.18.12, and 1.16.23.

EPSS 0.09% · 25.3th percentile

Risk Scores

EPSS Score
0.09%
25.3th percentile

Affected Products

VendorProductVersions
Bitnamivault0.8.0
Bitnamivault0.8.0

Timeline

References

Open in Interactive Console →