CVE-2026-12624 | HashiCorp Vault prior 1.19.19/1.20.13/1.21.8/2.0.3 ACL Policy Engine access control

SecurityVulns

A vulnerability classified as problematic has been found in HashiCorp Vault. Affected by this vulnerability is an unknown functionality of the component ACL Policy Engine. The manipulation leads to improper access controls.

This vulnerability is uniquely identified as CVE-2026-12624. The attack is possible to be carried out remotely. No exploit exists.

It is recommended to upgrade the affected component.VulDB Recent EntriesRead More