Junglewise Threat Intelligence

CVE-2026-27898: Vaultwarden has Unauthorized Access via Partial Update API on Another User’s Cipher

CVE-2026-27898 · Severity: low · CVSS 3.1 · Published 2026-03-04

Technologies: vaultwarden (crates.io). Vendors: crates.io.

Executive brief

Vaultwarden has Unauthorized Access via Partial Update API on Another User’s Cipher

Affected products

  • crates.io vaultwarden

Related threats