PT-2025-43548 · Hashicorp+1 · Vault+2

Pavlos Karakalidis

·

Published

2025-10-23

·

Updated

2025-12-29

·

CVE-2025-11621

CVSS v2.0

8.5

High

VectorAV:N/AC:L/Au:S/C:C/I:C/A:N
Name of the Vulnerable Software and Affected Versions Vault versions prior to 1.21.0 Vault Enterprise versions prior to 1.21.0, 1.20.5, 1.19.11, and 1.16.27
Description The AWS Auth method in Vault and Vault Enterprise may allow authentication bypass if the bound principal iam role is identical across multiple AWS accounts or utilizes a wildcard character. This can potentially lead to unauthorized access.
Recommendations Update Vault to version 1.21.0 or later. Update Vault Enterprise to version 1.21.0, 1.20.5, 1.19.11, or 1.16.27 or later.

Fix

Authentication Bypass Using an Alternate Path or Channel

Weakness Enumeration

Related Identifiers

BDU:2025-15600
BIT-VAULT-2025-11621
CVE-2025-11621
GHSA-9G4H-H484-3578
GO-2025-4070
OPENSUSE-SU-2025:15710-1

Affected Products

Red Os
Vault
Vault Enterprise