Lucene search

K
cvelistMitreCVELIST:CVE-2021-43998
HistoryNov 30, 2021 - 2:59 p.m.

CVE-2021-43998

2021-11-3014:59:08
mitre
www.cve.org
2

6.9 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

28.4%

HashiCorp Vault and Vault Enterprise 0.11.0 up to 1.7.5 and 1.8.4 templated ACL policies would always match the first-created entity alias if multiple entity aliases exist for a specified entity and mount combination, potentially resulting in incorrect policy enforcement. Fixed in Vault and Vault Enterprise 1.7.6, 1.8.5, and 1.9.0.

6.9 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

28.4%