Junglewise Threat Intelligence

CVE-2025-62506: GO-2025-4034 - MinIO is Vulnerable to Privilege Escalation via Session Policy Bypass in Service Accounts and STS in github.com/minio/minio

CVE-2025-62506 · Severity: low · CVSS 3.1 · Published 2025-10-30

Technologies: github.com/minio/minio (Go). Vendors: Go.

Executive brief

MinIO is Vulnerable to Privilege Escalation via Session Policy Bypass in Service Accounts and STS in github.com/minio/minio

Affected products

  • Go github.com/minio/minio

Related threats