← Back

CVE-2022-36130

nvd nist
Published: Sep 1, 2022Modified: Jun 17, 2026

JSON object

Loading...
9.9
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H
Exploitability: 3.1 / Impact: 6.0
Source: NVD

Description

HashiCorp Boundary up to 0.10.1 did not properly perform data integrity checks to ensure the resources were associated with the correct scopes, allowing potential privilege escalation for authorized users of another scope. Fixed in Boundary 0.10.2.

Affected (1)

Products: Hashicorp: Boundary
1 product
Boundary
Configuration A
1 vulnerable
Vulnerable SoftwareAffected Versions
Before 0.10.2

Timeline

No history available yet.