Information leakage vulnerability in OpenBao by OpenBao
CVE-2025-52893
4.5MEDIUM
What is CVE-2025-52893?
OpenBao, a platform designed for secure management and distribution of sensitive data, has a vulnerability that allows the exposure of sensitive information in its logs when handling malformed data inputs. This issue affects versions prior to v2.3.0 and can compromise data integrity and confidentiality. Users are urged to upgrade to version 2.3.0 or later to mitigate this risk and ensure that all client requests are properly formatted, as there currently exists no reliable workaround for this vulnerability.
Affected Version(s)
openbao < 2.3.0