CVE-2026-14886 | HashiCorp Vault Enterprise up to 2.0.3/1.21.8/1.20.13/1.19.19 Identity Entity Batch-Delete Endpoint authorization
A vulnerability, which was classified as critical, has been found in HashiCorp Vault Enterprise up to 2.0.3/1.21.8/1.20.13/1.19.19. Affected by this vulnerability is an unknown functionality of the component Identity Entity Batch-Delete Endpoint. This manipulation causes authorization bypass.
This vulnerability is handled as CVE-2026-14886. The attack can be initiated remotely. There is not any exploit available.
It is advisable to upgrade the affected component.VulDB Recent EntriesRead More