{"schema_version":1,"title":"github.com/openbao/openbao (Go) vulnerabilities","summary":"Junglewise Threat Intelligence has tracked 24 vulnerabilities in github.com/openbao/openbao (Go): 0 in the last 7 days and 0 in the last 90 days, 1 of them critical and 0 exploited in the wild. The most recent, CVE-2026-46405, was published on 28 May 2026.","url":"https://junglewise.ai/threats/technologies/github-com-openbao-openbao","json_url":"https://junglewise.ai/threats/technologies/github-com-openbao-openbao.json","publisher":"Junglewise Threat Intelligence","license":"CC-BY-4.0","license_url":"https://creativecommons.org/licenses/by/4.0/","attribution":"Junglewise Threat Intelligence, https://junglewise.ai/threats/technologies/github-com-openbao-openbao","sources":"NVD, GitHub Security Advisories, OSV, the CISA Known Exploited Vulnerabilities catalog, FIRST EPSS and vendor advisories","kind":"technology","counts":{"high":2,"all_time":24,"critical":1,"exploited":0,"last_7_days":0,"last_30_days":0,"last_90_days":0,"last_365_days":14},"latest":[{"cve":"CVE-2026-46405","cvss":5.3,"epss":0.0062,"slug":"cve-2026-46405-openbao-kerberos-auth-method-orphaned-token-accumulation","title":"OpenBao Kerberos auth method orphaned token accumulation","severity":"medium","exploited":false,"published_at":"2026-05-28T18:55:23+00:00","url":"https://junglewise.ai/threats/cve-2026-46405-openbao-kerberos-auth-method-orphaned-token-accumulation"},{"cve":"CVE-2026-46358","cvss":4,"epss":0.0021,"slug":"cve-2026-46358-openbao-sensitive-information-disclosure-in-audit-logs","title":"OpenBao sensitive information disclosure in audit logs","severity":"medium","exploited":false,"published_at":"2026-05-28T17:52:43+00:00","url":"https://junglewise.ai/threats/cve-2026-46358-openbao-sensitive-information-disclosure-in-audit-logs"},{"cve":"CVE-2026-45808","cvss":4,"epss":0.0043,"slug":"cve-2026-45808-openbao-authorization-bypass-in-sys-revoke-and-sys-renew","title":"OpenBao authorization bypass in sys/revoke and sys/renew endpoints","severity":"high","exploited":false,"published_at":"2026-05-28T17:37:32+00:00","url":"https://junglewise.ai/threats/cve-2026-45808-openbao-authorization-bypass-in-sys-revoke-and-sys-renew"},{"cve":"CVE-2026-42186","cvss":7.5,"epss":0.0043,"slug":"cve-2026-42186-openbao-improper-data-removal-during-namespace-deletion-retry","title":"OpenBao improper data removal during namespace deletion retry","severity":"high","exploited":false,"published_at":"2026-05-14T15:16:46.337+00:00","url":"https://junglewise.ai/threats/cve-2026-42186-openbao-improper-data-removal-during-namespace-deletion-retry"},{"cve":"CVE-2026-40264","cvss":4,"epss":0.0037,"slug":"cve-2026-40264-openbao-s-token-store-allows-cross-namespace-renewal-revocation","title":"OpenBao's Token Store Allows Cross-Namespace Renewal, Revocation","severity":"medium","exploited":false,"published_at":"2026-04-21T18:27:42+00:00","url":"https://junglewise.ai/threats/cve-2026-40264-openbao-s-token-store-allows-cross-namespace-renewal-revocation"},{"cve":"CVE-2026-39946","cvss":4.9,"epss":0.0039,"slug":"cve-2026-39946-openbao-s-sql-injection-in-postgresql-database-secrets-engine","title":"OpenBao's SQL Injection in PostgreSQL database secrets engine","severity":"medium","exploited":false,"published_at":"2026-04-21T18:26:05+00:00","url":"https://junglewise.ai/threats/cve-2026-39946-openbao-s-sql-injection-in-postgresql-database-secrets-engine"},{"cve":"CVE-2026-39396","cvss":3.1,"epss":0.0033,"slug":"cve-2026-39396-openbao-decompression-bomb-via-unbounded-copy-in-oci-plugin","title":"OpenBao: Decompression Bomb via Unbounded Copy in OCI Plugin Extraction (DoS)","severity":"low","exploited":false,"published_at":"2026-04-21T18:24:10+00:00","url":"https://junglewise.ai/threats/cve-2026-39396-openbao-decompression-bomb-via-unbounded-copy-in-oci-plugin"},{"cve":"CVE-2026-39388","cvss":3.1,"epss":0.0014,"slug":"cve-2026-39388-openbao-s-certificate-authentication-allows-token-renewal-with","title":"OpenBao's Certificate Authentication Allows Token Renewal With Different Certificate","severity":"low","exploited":false,"published_at":"2026-04-21T17:26:42+00:00","url":"https://junglewise.ai/threats/cve-2026-39388-openbao-s-certificate-authentication-allows-token-renewal-with"},{"cve":"CVE-2026-33758","cvss":6.1,"epss":0.0045,"slug":"cve-2026-33758-openbao-reflected-xss-in-oidc-authentication-callback","title":"OpenBao reflected XSS in OIDC authentication callback","severity":"medium","exploited":false,"published_at":"2026-03-27T15:16:57.863+00:00","url":"https://junglewise.ai/threats/cve-2026-33758-openbao-reflected-xss-in-oidc-authentication-callback"},{"cve":"CVE-2026-33757","cvss":9.6,"epss":0.0061,"slug":"cve-2026-33757-openbao-session-fixation-via-oidc-direct-callback-mode","title":"OpenBao session fixation via OIDC direct callback mode","severity":"critical","exploited":false,"published_at":"2026-03-27T15:16:57.69+00:00","url":"https://junglewise.ai/threats/cve-2026-33757-openbao-session-fixation-via-oidc-direct-callback-mode"},{"cve":"CVE-2025-64761","cvss":4,"epss":0.0036,"slug":"cve-2025-64761-openbao-is-vulnerable-to-privileged-operator-identity-group-root","title":"GO-2025-4156 - OpenBao is Vulnerable to Privileged Operator Identity Group Root Escalation in github.com/openbao/openbao","severity":"medium","exploited":false,"published_at":"2025-11-25T18:12:18+00:00","url":"https://junglewise.ai/threats/cve-2025-64761-openbao-is-vulnerable-to-privileged-operator-identity-group-root"},{"cve":"CVE-2025-59043","cvss":3.1,"epss":0.0069,"slug":"cve-2025-59043-openbao-has-potential-denial-of-service-vulnerability-when","title":"GO-2025-4039 - OpenBao has potential Denial of Service vulnerability when processing malicious unauthenticated JSON requests in github.com/openbao/openbao","severity":"low","exploited":false,"published_at":"2025-10-30T15:02:33+00:00","url":"https://junglewise.ai/threats/cve-2025-59043-openbao-has-potential-denial-of-service-vulnerability-when"},{"cve":"CVE-2025-62705","cvss":4,"epss":0.0033,"slug":"cve-2025-62705-openbao-and-vault-leak-byte-fields-in-audit-logs","title":"GO-2025-4052 - OpenBao and Vault Leak []byte Fields in Audit Logs in github.com/openbao/openbao","severity":"medium","exploited":false,"published_at":"2025-10-30T15:02:33+00:00","url":"https://junglewise.ai/threats/cve-2025-62705-openbao-and-vault-leak-byte-fields-in-audit-logs"},{"cve":"CVE-2025-62513","cvss":4,"epss":0.0032,"slug":"cve-2025-62513-openbao-leaks-httprawbody-in-audit-logs","title":"GO-2025-4049 - OpenBao leaks HTTPRawBody in Audit Logs in github.com/openbao/openbao","severity":"medium","exploited":false,"published_at":"2025-10-30T15:02:33+00:00","url":"https://junglewise.ai/threats/cve-2025-62513-openbao-leaks-httprawbody-in-audit-logs"},{"cve":"CVE-2025-54997","cvss":3.1,"epss":0.0038,"slug":"cve-2025-54997-privileged-openbao-operator-may-execute-code-on-the-underlying","title":"GO-2025-3858 - Privileged OpenBao Operator May Execute Code on the Underlying Host in github.com/openbao/openbao","severity":"low","exploited":false,"published_at":"2025-08-11T17:59:12+00:00","url":"https://junglewise.ai/threats/cve-2025-54997-privileged-openbao-operator-may-execute-code-on-the-underlying"},{"cve":"CVE-2025-54996","cvss":3.1,"epss":0.0031,"slug":"cve-2025-54996-openbao-root-namespace-operator-may-elevate-token-privileges","title":"GO-2025-3857 - OpenBao Root Namespace Operator May Elevate Token Privileges in github.com/openbao/openbao","severity":"low","exploited":false,"published_at":"2025-08-11T17:59:12+00:00","url":"https://junglewise.ai/threats/cve-2025-54996-openbao-root-namespace-operator-may-elevate-token-privileges"},{"cve":"CVE-2025-55000","cvss":3.1,"epss":0.0021,"slug":"cve-2025-55000-openbao-totp-secrets-engine-code-reuse","title":"GO-2025-3853 - OpenBao TOTP Secrets Engine Code Reuse in github.com/openbao/openbao","severity":"low","exploited":false,"published_at":"2025-08-11T17:59:12+00:00","url":"https://junglewise.ai/threats/cve-2025-55000-openbao-totp-secrets-engine-code-reuse"},{"cve":"CVE-2025-55003","cvss":3.1,"epss":0.0024,"slug":"cve-2025-55003-openbao-login-mfa-bypass-of-rate-limiting-and-totp-token-reuse","title":"GO-2025-3856 - OpenBao Login MFA Bypass of Rate Limiting and TOTP Token Reuse in github.com/openbao/openbao","severity":"low","exploited":false,"published_at":"2025-08-11T17:59:12+00:00","url":"https://junglewise.ai/threats/cve-2025-55003-openbao-login-mfa-bypass-of-rate-limiting-and-totp-token-reuse"},{"cve":"CVE-2025-54999","cvss":3.1,"epss":0.0019,"slug":"cve-2025-54999-openbao-has-a-timing-side-channel-in-the-userpass-auth-method","title":"GO-2025-3854 - OpenBao has a Timing Side-Channel in the Userpass Auth Method in github.com/openbao/openbao","severity":"low","exploited":false,"published_at":"2025-08-11T17:59:12+00:00","url":"https://junglewise.ai/threats/cve-2025-54999-openbao-has-a-timing-side-channel-in-the-userpass-auth-method"},{"cve":"CVE-2025-54998","cvss":3.1,"epss":0.0021,"slug":"cve-2025-54998-openbao-userpass-and-ldap-user-lockout-bypass","title":"GO-2025-3855 - OpenBao Userpass and LDAP User Lockout Bypass in github.com/openbao/openbao","severity":"low","exploited":false,"published_at":"2025-08-11T17:59:12+00:00","url":"https://junglewise.ai/threats/cve-2025-54998-openbao-userpass-and-ldap-user-lockout-bypass"},{"cve":"CVE-2025-55001","cvss":3.1,"epss":0.0022,"slug":"cve-2025-55001-openbao-ldap-mfa-enforcement-bypass-when-using-username-as-alias","title":"GO-2025-3859 - OpenBao LDAP MFA Enforcement Bypass When Using Username As Alias in github.com/openbao/openbao","severity":"low","exploited":false,"published_at":"2025-08-11T17:59:12+00:00","url":"https://junglewise.ai/threats/cve-2025-55001-openbao-ldap-mfa-enforcement-bypass-when-using-username-as-alias"},{"cve":"CVE-2025-52894","cvss":4,"epss":0.004,"slug":"cve-2025-52894-openbao-allows-cancellation-of-root-rekey-and-recovery-rekey","title":"GO-2025-3783 - OpenBao allows cancellation of root rekey and recovery rekey operations without authentication in github.com/openbao/openbao","severity":"medium","exploited":false,"published_at":"2025-07-28T19:57:13+00:00","url":"https://junglewise.ai/threats/cve-2025-52894-openbao-allows-cancellation-of-root-rekey-and-recovery-rekey"},{"cve":"CVE-2024-8185","cvss":3.1,"epss":0.0048,"slug":"cve-2024-8185-hashicorp-vault-vulnerable-to-denial-of-service-through-memory","title":"GO-2024-3246 - Hashicorp Vault vulnerable to denial of service through memory exhaustion in github.com/hashicorp/vault","severity":"low","exploited":false,"published_at":"2024-11-01T21:56:16+00:00","url":"https://junglewise.ai/threats/cve-2024-8185-hashicorp-vault-vulnerable-to-denial-of-service-through-memory"},{"cve":"CVE-2024-9180","cvss":3.1,"epss":0.0053,"slug":"cve-2024-9180-vault-community-edition-privilege-escalation-vulnerability","title":"GO-2024-3191 - Vault Community Edition privilege escalation vulnerability in github.com/hashicorp/vault","severity":"low","exploited":false,"published_at":"2024-10-11T14:32:39+00:00","url":"https://junglewise.ai/threats/cve-2024-9180-vault-community-edition-privilege-escalation-vulnerability"}],"weekly":[{"week":"2026-06-29","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-07-06","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-07-13","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-07-20","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-07-27","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-03","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-10","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-17","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-24","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-31","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-09-07","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-09-14","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-09-21","critical":0,"exploited":0,"vulnerabilities":0}],"related":[{"name":"github.com/siyuan-note/siyuan/kernel (Go)","slug":"github-com-siyuan-note-siyuan-kernel","vulnerabilities":83,"url":"https://junglewise.ai/threats/technologies/github-com-siyuan-note-siyuan-kernel"},{"name":"code.gitea.io/gitea (Go)","slug":"code-gitea-io-gitea","vulnerabilities":76,"url":"https://junglewise.ai/threats/technologies/code-gitea-io-gitea"},{"name":"github.com/rclone/rclone (Go)","slug":"github-com-rclone-rclone","vulnerabilities":26,"url":"https://junglewise.ai/threats/technologies/github-com-rclone-rclone"},{"name":"gogs.io/gogs (Go)","slug":"gogs-io-gogs","vulnerabilities":25,"url":"https://junglewise.ai/threats/technologies/gogs-io-gogs"},{"name":"github.com/filebrowser/filebrowser/v2 (Go)","slug":"github-com-filebrowser-filebrowser-v2","vulnerabilities":18,"url":"https://junglewise.ai/threats/technologies/github-com-filebrowser-filebrowser-v2"},{"name":"github.com/fission/fission (Go)","slug":"github-com-fission-fission","vulnerabilities":18,"url":"https://junglewise.ai/threats/technologies/github-com-fission-fission"},{"name":"github.com/klever-io/klever-go (Go)","slug":"github-com-klever-io-klever-go","vulnerabilities":18,"url":"https://junglewise.ai/threats/technologies/github-com-klever-io-klever-go"},{"name":"code.vikunja.io/api (Go)","slug":"code-vikunja-io-api","vulnerabilities":15,"url":"https://junglewise.ai/threats/technologies/code-vikunja-io-api"},{"name":"github.com/cloudreve/Cloudreve/v4 (Go)","slug":"github-com-cloudreve-cloudreve-v4","vulnerabilities":15,"url":"https://junglewise.ai/threats/technologies/github-com-cloudreve-cloudreve-v4"},{"name":"github.com/gotenberg/gotenberg/v8 (Go)","slug":"github-com-gotenberg-gotenberg-v8","vulnerabilities":14,"url":"https://junglewise.ai/threats/technologies/github-com-gotenberg-gotenberg-v8"},{"name":"github.com/nezhahq/nezha (Go)","slug":"github-com-nezhahq-nezha","vulnerabilities":14,"url":"https://junglewise.ai/threats/technologies/github-com-nezhahq-nezha"},{"name":"github.com/fleetdm/fleet/v4 (Go)","slug":"github-com-fleetdm-fleet-v4","vulnerabilities":13,"url":"https://junglewise.ai/threats/technologies/github-com-fleetdm-fleet-v4"}],"technology":{"hub":true,"name":"github.com/openbao/openbao (Go)","slug":"github-com-openbao-openbao","vendor":{"name":"Go","slug":"go","url":"https://junglewise.ai/threats/vendors/go"},"aliases":[],"homepage":"https://openbao.org/","repo_url":"https://github.com/openbao/openbao","description":"An open-source fork of HashiCorp Vault for managing secrets, identities, and sensitive data.","url":"https://junglewise.ai/threats/technologies/github-com-openbao-openbao"},"most_severe":[{"cve":"CVE-2026-33757","cvss":9.6,"epss":0.0061,"slug":"cve-2026-33757-openbao-session-fixation-via-oidc-direct-callback-mode","title":"OpenBao session fixation via OIDC direct callback mode","severity":"critical","exploited":false,"published_at":"2026-03-27T15:16:57.69+00:00","url":"https://junglewise.ai/threats/cve-2026-33757-openbao-session-fixation-via-oidc-direct-callback-mode"},{"cve":"CVE-2026-42186","cvss":7.5,"epss":0.0043,"slug":"cve-2026-42186-openbao-improper-data-removal-during-namespace-deletion-retry","title":"OpenBao improper data removal during namespace deletion retry","severity":"high","exploited":false,"published_at":"2026-05-14T15:16:46.337+00:00","url":"https://junglewise.ai/threats/cve-2026-42186-openbao-improper-data-removal-during-namespace-deletion-retry"},{"cve":"CVE-2026-45808","cvss":4,"epss":0.0043,"slug":"cve-2026-45808-openbao-authorization-bypass-in-sys-revoke-and-sys-renew","title":"OpenBao authorization bypass in sys/revoke and sys/renew endpoints","severity":"high","exploited":false,"published_at":"2026-05-28T17:37:32+00:00","url":"https://junglewise.ai/threats/cve-2026-45808-openbao-authorization-bypass-in-sys-revoke-and-sys-renew"},{"cve":"CVE-2026-33758","cvss":6.1,"epss":0.0045,"slug":"cve-2026-33758-openbao-reflected-xss-in-oidc-authentication-callback","title":"OpenBao reflected XSS in OIDC authentication callback","severity":"medium","exploited":false,"published_at":"2026-03-27T15:16:57.863+00:00","url":"https://junglewise.ai/threats/cve-2026-33758-openbao-reflected-xss-in-oidc-authentication-callback"},{"cve":"CVE-2026-46405","cvss":5.3,"epss":0.0062,"slug":"cve-2026-46405-openbao-kerberos-auth-method-orphaned-token-accumulation","title":"OpenBao Kerberos auth method orphaned token accumulation","severity":"medium","exploited":false,"published_at":"2026-05-28T18:55:23+00:00","url":"https://junglewise.ai/threats/cve-2026-46405-openbao-kerberos-auth-method-orphaned-token-accumulation"},{"cve":"CVE-2026-39946","cvss":4.9,"epss":0.0039,"slug":"cve-2026-39946-openbao-s-sql-injection-in-postgresql-database-secrets-engine","title":"OpenBao's SQL Injection in PostgreSQL database secrets engine","severity":"medium","exploited":false,"published_at":"2026-04-21T18:26:05+00:00","url":"https://junglewise.ai/threats/cve-2026-39946-openbao-s-sql-injection-in-postgresql-database-secrets-engine"},{"cve":"CVE-2025-52894","cvss":4,"epss":0.004,"slug":"cve-2025-52894-openbao-allows-cancellation-of-root-rekey-and-recovery-rekey","title":"GO-2025-3783 - OpenBao allows cancellation of root rekey and recovery rekey operations without authentication in github.com/openbao/openbao","severity":"medium","exploited":false,"published_at":"2025-07-28T19:57:13+00:00","url":"https://junglewise.ai/threats/cve-2025-52894-openbao-allows-cancellation-of-root-rekey-and-recovery-rekey"},{"cve":"CVE-2026-40264","cvss":4,"epss":0.0037,"slug":"cve-2026-40264-openbao-s-token-store-allows-cross-namespace-renewal-revocation","title":"OpenBao's Token Store Allows Cross-Namespace Renewal, Revocation","severity":"medium","exploited":false,"published_at":"2026-04-21T18:27:42+00:00","url":"https://junglewise.ai/threats/cve-2026-40264-openbao-s-token-store-allows-cross-namespace-renewal-revocation"},{"cve":"CVE-2025-64761","cvss":4,"epss":0.0036,"slug":"cve-2025-64761-openbao-is-vulnerable-to-privileged-operator-identity-group-root","title":"GO-2025-4156 - OpenBao is Vulnerable to Privileged Operator Identity Group Root Escalation in github.com/openbao/openbao","severity":"medium","exploited":false,"published_at":"2025-11-25T18:12:18+00:00","url":"https://junglewise.ai/threats/cve-2025-64761-openbao-is-vulnerable-to-privileged-operator-identity-group-root"},{"cve":"CVE-2025-62705","cvss":4,"epss":0.0033,"slug":"cve-2025-62705-openbao-and-vault-leak-byte-fields-in-audit-logs","title":"GO-2025-4052 - OpenBao and Vault Leak []byte Fields in Audit Logs in github.com/openbao/openbao","severity":"medium","exploited":false,"published_at":"2025-10-30T15:02:33+00:00","url":"https://junglewise.ai/threats/cve-2025-62705-openbao-and-vault-leak-byte-fields-in-audit-logs"}],"generated_at":"2026-09-26T16:07:00.132667+00:00"}