Threat Intelligence Database
Comprehensive database of the latest cyber threats affecting organizations worldwide. Filter and search to find specific threat intelligence relevant to your organization.
Stop chasing alerts. Route them.
Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.
Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)
API access activates after upgrading in Console -> Billing.
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.
Filter Threats
Narrow down the results by type, severity, or affected countries
Threat Intelligence
Click on any threat for detailed analysis and mitigation recommendations
0 CVE-2026-5006 is an authorization bypass vulnerability in HashiCorp Vault and Vault Enterprise. An authenticated attacker can manipulate an identity value in a templated policy path, including slash characters, to gain unintended access to Vault paths. This vulnerability was fixed in Vault Community Edition 2.0.4 and Vault Enterprise versions 2.0.4, 1.21.9, 1.20.14, and 1.19.20. Join the discussion | CVE Database V5 | 08/24/2026, 20:32:49 UTC Added: 08/24/2026, 20:37:52 UTC |
Vault’s ACL policy engine did not consistently enforce a wildcard (glob) deny rule against LIST requests made with a trailing slash on the denied path. This may allow a token holding a broader allow rule alongside a narrower wildcard deny rule to enumerate the names of entries beneath a path it was intended to be denied access to. This vulnerability (CVE-2026-12624) is fixed in Vault Community Edition 2.0.3 and Vault Enterprise 2.0.3, 1.21.8, 1.20.13, and 1.19.19. Join the discussion | CVE Database V5 | 08/17/2026, 05:56:31 UTC Added: 08/10/2026, 17:11:49 UTC |
0 HashiCorp Vault and Vault Enterprise prior to 2.0.1 audit device validation logic did not consistently apply plugin directory protections when the legacy file audit path option was used. This vulnerability (CVE-2026-5051) is fixed in 2.0.1, 1.21.6, 1.20.11, and 1.19.17. Join the discussion | CVE Database V5 | 07/01/2026, 17:10:56 UTC Added: 07/01/2026, 17:52:19 UTC |
0 Vault is vulnerable to a denial-of-service condition where an unauthenticated attacker can repeatedly initiate or cancel root token generation or rekey operations, occupying the single in-progress operation slot. This prevents legitimate operators from completing these workflows. This vulnerability, CVE-2026-5807, is fixed in Vault Community Edition 2.0.0 and Vault Enterprise 2.0.0. Join the discussion | CVE Database V5 | 04/21/2026, 12:15:58 UTC Added: 04/17/2026, 04:31:52 UTC |
CVE-2026-5052 is a Server-Side Request Forgery (SSRF) vulnerability in HashiCorp Vault's PKI engine ACME validation. The vulnerability allows local network targets to be requested during http-01 and tls-alpn-01 challenge issuance, potentially leading to information disclosure. This issue affects Vault version 1.15.0 and was fixed in Vault Community Edition 2.0.0 and Vault Enterprise versions 2.0.0, 1.21. Join the discussion | CVE Database V5 | 04/21/2026, 12:15:56 UTC Added: 04/17/2026, 11:06:08 UTC |
0 If a Vault auth mount is configured to pass through the "Authorization" header, and the "Authorization" header is used to authenticate to Vault, Vault forwarded the Vault token to the auth plugin backend. Fixed in 2.0.0, 1.21.5, 1.20.10, and 1.19.16. Join the discussion | CVE Database V5 | 04/21/2026, 12:15:54 UTC Added: 04/17/2026, 11:06:08 UTC |
0 An authenticated user with access to a kvv2 path through a policy containing a glob may be able to delete secrets they were not authorized to read or write, resulting in denial-of-service. This vulnerability did not allow a malicious user to delete secrets across namespaces, nor read any secret data. Fxed in Vault Community Edition 2.0.0 and Vault Enterprise 2.0.0, 1.21.5, 1.20.10, and 1.19.16. Join the discussion | CVE Database V5 | 04/21/2026, 12:15:52 UTC Added: 04/17/2026, 11:06:08 UTC |
0 Vault and Vault Enterprise (“Vault”) are vulnerable to an unauthenticated denial of service when processing JSON payloads. This occurs due to a regression from a previous fix for [+HCSEC-2025-24+|https://discuss.hashicorp.com/t/hcsec-2025-24-vault-denial-of-service-though-complex-json-payloads/76393] which allowed for processing JSON payloads before applying rate limits. This vulnerability, CVE-2025-12044, is fixed in Vault Community Edition 1.21.0 and Vault Enterprise 1.16.27, 1.19.11, 1.20.5, and 1.21.0. Join the discussion | CVE Database V5 | 10/28/2025, 11:51:06 UTC Added: 10/23/2025, 19:30:22 UTC |
0 Vault and Vault Enterprise’s (“Vault”) AWS Auth method may be susceptible to authentication bypass if the role of the configured bound_principal_iam is the same across AWS accounts, or uses a wildcard. This vulnerability, CVE-2025-11621, is fixed in Vault Community Edition 1.21.0 and Vault Enterprise 1.21.0, 1.20.5, 1.19.11, and 1.16.27 Join the discussion | CVE Database V5 | 10/23/2025, 19:08:54 UTC Added: 10/23/2025, 19:15:31 UTC |
0 CVE-2025-4656 is a low-severity vulnerability in HashiCorp Vault affecting rekey and recovery key operations. It involves synchronous access of a remote resource without a timeout, which can lead to denial of service caused by uncontrolled cancellation by a Vault operator. The vulnerability has been fixed in Vault Community Edition 1.20.0 and several Enterprise versions. Join the discussion | CVE Database V5 | 06/30/2025, 15:05:10 UTC Added: 06/25/2025, 16:36:56 UTC |
Showing 1 to 10 of 11 results