openbao
Security Risk Profile
Security Risk Score
Comprehensive risk assessment based on 28 vulnerabilities, EPSS scores, exploitation status, and remediation availability.
📅 Data spans from March 4, 2024 to present
Threat Assessment
Severity Distribution
Exploit Likelihood
Age Distribution
Common Weaknesses (CWE)
Most Affected Products
Recent Vulnerabilities
See more →OpenBao's Namespace Deletion May Not Delete Data Properly
OpenBao's Token Store Allows Cross-Namespace Renewal, Revocation
OpenBao has Decompression Bomb via Unbounded Copy in OCI Plugin Extraction (DoS)
OpenBao's Certificate Authentication Allows Token Renewal With Different Certificate
OpenBao allows SQL Injection in PostgreSQL database secrets engine
OpenBao has Reflected XSS in its OIDC authentication error message
OpenBao lacks user confirmation for OIDC direct callback mode
OpenBao Privileged Operator Identity Group Root Escalation
Monitor openbao in Real-Time
Get instant alerts when new vulnerabilities are discovered. Stay ahead of security threats with SecAlerts.