QID 980382
QID 980382: Go (go) Security Update for github.com/hashicorp/vault (GHSA-6239-28c2-9mrm)
HashiCorp Vault and Vault Enterprises UI erroneously cached and exposed user-viewed secrets between sessions in a single shared browser. Fixed in 1.8.0 and pending 1.7.4 / 1.6.6 releases.
Successful exploitation of this vulnerability may affect the confidentiality, integrity, and availability of the targeted user.
Solution
Customers are advised to refer to GHSA-6239-28c2-9mrm for updates pertaining to this vulnerability.
Vendor References
- GHSA-6239-28c2-9mrm -
github.com/advisories/GHSA-6239-28c2-9mrm
CVEs related to QID 980382
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| GHSA-6239-28c2-9mrm | github.com/hashicorp/vault |
|