Improper Authorization in Vault Enterprise and Vault - CVE-2026-5006
Published: August 25, 2026
Vulnerability details
The vulnerability allows a remote user to access unintended Vault paths.
The vulnerability exists due to improper access control in templated policy paths when rendering identity values containing slash characters. A remote user can manipulate a referenced identity value to access unintended Vault paths.
Exploitation requires control over an identity value referenced by an applicable templated policy.
Affected software
Vault
How to mitigate CVE-2026-5006
Vault - update to 2.0.4