<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sat, 03 Oct 2026 19:58:01 +0000</lastBuildDate>
    <item>
      <title>bdu:2025-09565</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2025-09565</link>
      <description>bdu:2025-09565</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2025-09565</guid>
    </item>
    <item>
      <title>BIT-vault-2025-5999 — Vault Root Namespace Operator May Elevate Token Privileges</title>
      <link>https://cve.radiocsirt.org/vuln/bit-vault-2025-5999</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Bitnami: vault&lt;/p&gt;
&lt;p&gt;A privileged Vault operator with write permissions to the root namespace’s identity endpoint could escalate their own or another user’s token privileges to Vault’s root policy. Fixed in Vault Community Edition 1.20.0 and Vault Enterprise 1.20.0, 1.19.6, 1.18.11 and 1.16.22.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Bitnami: vault&lt;/p&gt;
&lt;p&gt;A privileged Vault operator with write permissions to the root namespace’s identity endpoint could escalate their own or another user’s token privileges to Vault’s root policy. Fixed in Vault Community Edition 1.20.0 and Vault Enterprise 1.20.0, 1.19.6, 1.18.11 and 1.16.22.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bit-vault-2025-5999</guid>
    </item>
    <item>
      <title>EUVD-2026-248897</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-248897</link>
      <description>EUVD-2026-248897</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-248897</guid>
    </item>
    <item>
      <title>fkie_cve-2025-5999</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2025-5999</link>
      <description>&lt;p&gt;A privileged Vault operator with write permissions to the root namespace’s identity endpoint could escalate their own or another user’s token privileges to Vault’s root policy. Fixed in Vault Community Edition 1.20.0 and Vault Enterprise 1.20.0, 1.19.6, 1.18.11 and 1.16.22.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A privileged Vault operator with write permissions to the root namespace’s identity endpoint could escalate their own or another user’s token privileges to Vault’s root policy. Fixed in Vault Community Edition 1.20.0 and Vault Enterprise 1.20.0, 1.19.6, 1.18.11 and 1.16.22.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2025-5999</guid>
    </item>
    <item>
      <title>GHSA-6h4p-m86h-hhgh — Hashicorp Vault has Privilege Escalation Vulnerability</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-6h4p-m86h-hhgh</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Go: github.com/hashicorp/vault&lt;/p&gt;
&lt;p&gt;A privileged Vault operator with write permissions to the root namespace’s identity endpoint could escalate their own or another user’s token privileges to Vault’s root policy. Fixed in Vault Community Edition 1.20.0 and Vault Enterprise 1.20.0, 1.19.6, 1.18.11 and 1.16.22.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Go: github.com/hashicorp/vault&lt;/p&gt;
&lt;p&gt;A privileged Vault operator with write permissions to the root namespace’s identity endpoint could escalate their own or another user’s token privileges to Vault’s root policy. Fixed in Vault Community Edition 1.20.0 and Vault Enterprise 1.20.0, 1.19.6, 1.18.11 and 1.16.22.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-6h4p-m86h-hhgh</guid>
    </item>
    <item>
      <title>openSUSE-SU-2025:15434-1 — govulncheck-vulndb-0.0.20250811T192933-1.1 on GA media</title>
      <link>https://cve.radiocsirt.org/vuln/opensuse-su-2025:15434-1</link>
      <description>&lt;p&gt;govulncheck-vulndb-0.0.20250811T192933-1.1 on GA media&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;govulncheck-vulndb-0.0.20250811T192933-1.1 on GA media&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/opensuse-su-2025:15434-1</guid>
    </item>
    <item>
      <title>WID-SEC-W-2025-1702 — Hashicorp Vault Community und Enterprise: Mehrere Schwachstellen</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2025-1702</link>
      <description>&lt;p&gt;Ein Angreifer kann mehrere Schwachstellen in Hashicorp Vault ausnutzen, um erhöhte Rechte zu erlangen, Sicherheitsmaßnahmen zu umgehen, beliebigen Code auszuführen und vertrauliche Informationen preiszugeben.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein Angreifer kann mehrere Schwachstellen in Hashicorp Vault ausnutzen, um erhöhte Rechte zu erlangen, Sicherheitsmaßnahmen zu umgehen, beliebigen Code auszuführen und vertrauliche Informationen preiszugeben.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2025-1702</guid>
    </item>
  </channel>
</rss>
