VYPR
Critical severity9.9NVD Advisory· Published Sep 1, 2022· Updated Jun 17, 2026

CVE-2022-36130

CVE-2022-36130

Description

HashiCorp Boundary up to 0.10.1 did not properly perform data integrity checks to ensure the resources were associated with the correct scopes, allowing potential privilege escalation for authorized users of another scope. Fixed in Boundary 0.10.2.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

3
  • cpe:2.3:a:hashicorp:boundary:*:*:*:*:*:*:*:*+ 2 more
    • cpe:2.3:a:hashicorp:boundary:*:*:*:*:*:*:*:*range: <0.10.2
    • (no CPE)
    • (no CPE)range: <=0.10.1

Patches

Vulnerability mechanics

References

2

News mentions

0

No linked articles in our index yet.