CVE-2025-5999

HIGH7.2EPSS 0.16%

Hashicorp Vault has Privilege Escalation Vulnerability

Published: 8/1/2025Modified: 2/4/2026
Also known as:GHSA-6h4p-m86h-hhghBIT-vault-2025-5999CGA-6mjj-vxq3-6pmmGO-2025-3837

Description

A privileged Vault operator with write permissions to the root namespace’s identity endpoint could escalate their own or another user’s token privileges to Vault’s root policy. Fixed in Vault Community Edition 1.20.0 and Vault Enterprise 1.20.0, 1.19.6, 1.18.11 and 1.16.22.

Affected packages (3)

CVSS scores

SourceVersionSeverityVector
osvCVSS 3.1HIGH7.2CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H

References (4)