CVE-2025-6004 PUBLISHED

Vault and Vault Enterprise’s (“Vault”) user lockout feature could be bypassed for Userpass and LDAP authentication methods. Fixed in Vault Community Edition 1.20.1 and Vault Enterprise 1.20.1, 1.19.7, 1.18.12, and 1.16.23.

EPSS 0.03% · 7.1th percentile

Risk Scores

EPSS Score
0.03%
7.1th percentile

Affected Products

VendorProductVersions
Bitnamivault1.13.0
Bitnamivault1.13.0

Timeline

References

Open in Interactive Console →