Junglewise Threat Intelligence

CVE-2025-54999: GO-2025-3854 - OpenBao has a Timing Side-Channel in the Userpass Auth Method in github.com/openbao/openbao

CVE-2025-54999 · Severity: low · CVSS 3.1 · Published 2025-08-11

Technologies: github.com/openbao/openbao (Go). Vendors: Go.

Executive brief

OpenBao has a Timing Side-Channel in the Userpass Auth Method in github.com/openbao/openbao

Affected products

  • Go github.com/openbao/openbao

Related threats