Sploitus

CVE-2026-4525

No indexed exploits for CVE-2026-4525 yet

If a Vault auth mount is configured to pass through the "Authorization" header, and the "Authorization" header is used to authenticate to Vault, Vault forwarded the Vault token to the auth plugin backend. Fixed in 2.0.0, 1.21.5, 1.20.10, and 1.19.16.

Affected products
Red Os, Vault
Hashicorp Vault
< 1.19.16, 2.0.0, 1.20.10, 1.21.5
Fix
Available
CVSS 3.1
8.8 HIGH
EPSS
0.4% (33th percentile)
Weakness
CWE-201
NVD status
Modified
Published
2026-04-17
Attack patterns
CAPEC-118
CVE-2026-4525 at NVD
Authoritative description, scoring and affected products

No indexed exploits for CVE-2026-4525 yet

Our index is partial: it proves presence, never absence

No exploit for CVE-2026-4525 has been indexed yet. Our index is built from live traffic and upstream syncs, so this page can only say what it knows — not that no exploit exists.