CVE-2021-38553 is a vulnerability in HashiCorp Vault
Published on August 13, 2021
HashiCorp Vault and Vault Enterprise 1.4.0 through 1.7.3 initialized an underlying database file associated with the Integrated Storage feature with excessively broad filesystem permissions. Fixed in Vault and Vault Enterprise 1.8.0.
Products Associated with CVE-2021-38553
Want to know whenever a new CVE is published for HashiCorp Vault? stack.watch will email you.
Exploit Probability
EPSS
0.03%
Percentile
9.09%
EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.