#1 paperclip · #2 hindsight · #3 univer · #4 rohitg00 · #5 openbao
#GitHub #OpenSource #Dev
#1 paperclip · #2 hindsight · #3 univer · #4 rohitg00 · #5 openbao
#GitHub #OpenSource #Dev
⭐ 7,519 (+16)
🗒 Go
OpenBao is a software solution to manage, store, and distribute sensitive data including secrets, certificates, and keys.
A follow-up on the three operational gaps the SDK leaves open, and how to close them with OpenBao.
https://bit.ly/3VcS57V
A follow-up on the three operational gaps the SDK leaves open, and how to close them with OpenBao.
https://bit.ly/3VcS57V
OpenBao is an open source identity-based secrets management system. Prior to 2.6.0, OpenBao's handleLogical...
🔎 https://stemshop.top/cve/CVE-2026-63132
#CVE #CyberSecurity #InfoSec
OpenBao is an open source identity-based secrets management system. Prior to 2.6.0, OpenBao's handleLogical...
🔎 https://stemshop.top/cve/CVE-2026-63132
#CVE #CyberSecurity #InfoSec
📊 9.2/10
🏢 openbao
📝 OpenBao is an open source identity-based secrets management system. Prior to 2.6.0, OpenBao's handleLogicalRecovery path in http/logical.go compared the h...
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-85520
#cybersecurity #infosec #cve #euvd
📊 9.2/10
🏢 openbao
📝 OpenBao is an open source identity-based secrets management system. Prior to 2.6.0, OpenBao's handleLogicalRecovery path in http/logical.go compared the h...
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-85520
#cybersecurity #infosec #cve #euvd
📊 7.5/10
🏢 openbao
📝 OpenBao's Templated Policies Allow Privilege Escalation via Wildcard Characters
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-83955
#cybersecurity #infosec #cve #euvd
📊 7.5/10
🏢 openbao
📝 OpenBao's Templated Policies Allow Privilege Escalation via Wildcard Characters
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-83955
#cybersecurity #infosec #cve #euvd
If OpenBao is run in its special recovery mode, a timing flaw could let a malicious user discover the recovery token. With that token, the attacker could read or change data stored in…
Too many irrelevant or confusing CVEs? Use stackflag.com
#openbao #Golang #CVE #infosec
If OpenBao is run in its special recovery mode, a timing flaw could let a malicious user discover the recovery token. With that token, the attacker could read or change data stored in…
Too many irrelevant or confusing CVEs? Use stackflag.com
#openbao #Golang #CVE #infosec
OpenBao versions before 2.6.0 let specially crafted characters in policy templates change how access rules are applied. An attacker who can modify those templates could gain higher…
Too many irrelevant or confusing CVEs? Use stackflag.com
#openbao #CVE #infosec
OpenBao versions before 2.6.0 let specially crafted characters in policy templates change how access rules are applied. An attacker who can modify those templates could gain higher…
Too many irrelevant or confusing CVEs? Use stackflag.com
#openbao #CVE #infosec
Run a package on demand, without creating an environment or installing anything.
Plus: new plugins for 1Password, Vault, OpenBao, and Infisical. Secrets stay with the provider and become available when you activate.
More: buff.ly/XAEDEq8
Run a package on demand, without creating an environment or installing anything.
Plus: new plugins for 1Password, Vault, OpenBao, and Infisical. Secrets stay with the provider and become available when you activate.
More: buff.ly/XAEDEq8
FWIW you might find OpenBao agent sidecars useful for kind of stuff? No need to worry about leaking credentials if they’re painless to rotate
FWIW you might find OpenBao agent sidecars useful for kind of stuff? No need to worry about leaking credentials if they’re painless to rotate