Executive brief
OpenBao allows cancellation of root rekey and recovery rekey operations without authentication in github.com/openbao/openbao
Affected products
- Go github.com/openbao/openbao
Junglewise Threat Intelligence
CVE-2025-52894 · Severity: medium · CVSS 4 · Published 2025-07-28
Technologies: github.com/openbao/openbao (Go). Vendors: Go.
OpenBao allows cancellation of root rekey and recovery rekey operations without authentication in github.com/openbao/openbao