Robuta

https://openbao.org/ OpenBao OpenBao is an open source, community-driven fork of HashiCorp Vault managed by the Linux Foundation to manage, store, and distribute sensitive data. openbao https://lf-edge.atlassian.net/wiki/spaces/OP/overview OpenBao - OpenBao - Confluence openbaoconfluence https://advisories.gitlab.com/golang/github.com/openbao/openbao/CVE-2026-39388/ OpenBao's Certificate Authentication Allows Token Renewal With Different Certificate | GitLab... CVE-2026-39388 OpenBao's Certificate Authentication Allows Token Renewal With Different Certificate: Due to incorrect matching, the certificate authentication... certificate authenticationopenbaoallowstokenrenewal https://docs.nvidia.com/nvcf/vault-open-bao Vault/OpenBao | NVIDIA Cloud Functions vaultopenbaonvidiacloudfunctions https://www.adfinis.com/en/partners-and-products/secretz-enterprise Secretz Enterprise | OpenBao Enterprise Support by Adfinis OpenBao enterprise support and long-term maintenance from Adfinis. Secretz Enterprise: a flat-fee alternative to proprietary secrets management. secretz enterprisesupport byopenbaoadfinis https://advisories.gitlab.com/golang/github.com/openbao/openbao/CVE-2026-33758/ OpenBao has Reflected XSS in its OIDC authentication error message | GitLab Advisory Database (GLAD) CVE-2026-33758 OpenBao has Reflected XSS in its OIDC authentication error message: OpenBao installations that have an OIDC/JWT authentication method enabled... https://advisories.gitlab.com/golang/github.com/openbao/openbao/CVE-2025-59043/ OpenBao has potential Denial of Service vulnerability when processing malicious unauthenticated... CVE-2025-59043 OpenBao has potential Denial of Service vulnerability when processing malicious unauthenticated JSON requests: JSON objects after decoding might... denial of serviceopenbaopotential https://lists.freebsd.org/archives/freebsd-ports-bugs/2025-October/082754.html [Bug 289935] [PATCH] security/openbao: Update to 2.4.1 bugpatchsecurityopenbaoupdate https://lf-edge.atlassian.net/wiki/spaces/OP/pages/22085633/2024-09-12+OpenBao+TSC+Meeting 2024-09-12 OpenBao TSC Meeting - OpenBao - Confluence openbaotscmeetingconfluence https://advisories.gitlab.com/pkg/golang/github.com/openbao/openbao/sdk/v2/framework/ Golang/Github.com/Openbao/Openbao/Sdk/V2/Framework | GitLab Advisory Database (GLAD) golanggithubopenbaosdk https://advisories.gitlab.com/golang/github.com/openbao/openbao/CVE-2026-39396/ OpenBao: Decompression Bomb via Unbounded Copy in OCI Plugin Extraction (DoS) | GitLab Advisory... CVE-2026-39396 OpenBao: Decompression Bomb via Unbounded Copy in OCI Plugin Extraction (DoS): ExtractPluginFromImage() in OpenBao's OCI plugin downloader... https://www.adfinis.com/en/partners-and-products/openbao OpenBao Services by Adfinis | Secrets Management for Everyone Open, simple, and reliable secrets management with OpenBao. Adfinis plans, builds, and runs OpenBao 24x7, and provides enterprise support. secrets managementopenbaoservicesadfiniseveryone https://advisories.gitlab.com/golang/github.com/openbao/openbao/CVE-2025-55001/ OpenBao LDAP MFA Enforcement Bypass When Using Username As Alias | GitLab Advisory Database (GLAD) CVE-2025-55001 OpenBao LDAP MFA Enforcement Bypass When Using Username As Alias: OpenBao allows assignment of policies and MFA attribution based upon entity... https://advisories.gitlab.com/golang/github.com/openbao/openbao-plugins/CVE-2025-59048/ OpenBao AWS Plugin Vulnerable to Cross-Account IAM Role Impersonation in AWS Auth Method | GitLab... CVE-2025-59048 OpenBao AWS Plugin Vulnerable to Cross-Account IAM Role Impersonation in AWS Auth Method: This is a cross-account impersonation vulnerability in... https://advisories.gitlab.com/golang/github.com/openbao/openbao/CVE-2026-39946/ OpenBao's SQL Injection in PostgreSQL database secrets engine | GitLab Advisory Database (GLAD) CVE-2026-39946 OpenBao's SQL Injection in PostgreSQL database secrets engine: When OpenBao revoked privileges on a role in the PostgreSQL database secrets... sql injectionpostgresql database https://advisories.gitlab.com/pkg/golang/github.com/openbao/openbao/CVE-2024-9180/ https://advisories.gitlab.com/golang/github.com/openbao/openbao/CVE-2024-9180/ httpsadvisoriesgitlabgolanggithub