hashicorp vault-action CVE-2021-32074 is a vulnerability in HashiCorp Vault Action
Published on May 7, 2021

HashiCorp vault-action (aka Vault GitHub Action) before 2.2.0 allows attackers to obtain sensitive information from log files because a multi-line secret was not correctly registered with GitHub Actions for log masking.

NVD


Products Associated with CVE-2021-32074

You can be notified by email with stack.watch whenever vulnerabilities like CVE-2021-32074 are published in HashiCorp Vault Action:

 

Exploit Probability

EPSS
0.35%
Percentile
56.67%

EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.