Executive brief
MinIO is Vulnerable to Privilege Escalation via Session Policy Bypass in Service Accounts and STS in github.com/minio/minio
Affected products
- Go github.com/minio/minio
Junglewise Threat Intelligence
CVE-2025-62506 · Severity: low · CVSS 3.1 · Published 2025-10-30
Technologies: github.com/minio/minio (Go). Vendors: Go.
MinIO is Vulnerable to Privilege Escalation via Session Policy Bypass in Service Accounts and STS in github.com/minio/minio