Medium severity5.4NVD Advisory· Published Oct 7, 2026
CVE-2026-105820
CVE-2026-105820
Description
Vault's ACL policy cache allowed namespace traversal when policy names contained path traversal constructs. This may allow a token assigned specially crafted policy names to use the capabilities of policies defined in other namespaces, including the root namespace. This vulnerability (CVE-2026-105820) is fixed in Vault Enterprise 2.1.2, 1.21.12, 1.20.17, and 1.19.23. Vault Community Edition does not support namespaces, and is not affected.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2- Range: before 2.1.2, 1.21.12, 1.20.17, 1.19.23
Patches
Vulnerability mechanics
References
1News mentions
0No linked articles in our index yet.