Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:30135
HistoryApr 23, 2021 - 1:33 a.m.

Authorization Bypass

2021-04-2301:33:42
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
7

0.004 Low

EPSS

Percentile

74.2%

github.com/hashicorp/terraform-provider-vault is vulnerable to authorization bypass. The insecure configuration in GCE-type bound labels for GCP auth method could allow for an attacker to bypass authorization and access otherwise restricted actions.

0.004 Low

EPSS

Percentile

74.2%

Related for VERACODE:30135