| Source | ID | Title |
|---|---|---|
Github GHSA |
GHSA-vv66-6rp4-wr4f | OpenBao's Namespace Deletion May Not Delete Data Properly |
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
Thu, 14 May 2026 16:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Openbao
Openbao openbao |
|
| Vendors & Products |
Openbao
Openbao openbao |
Thu, 14 May 2026 16:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 14 May 2026 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | OpenBao is an open source identity-based secrets management system. Prior to 2.5.3, when OpenBao's initial namespace deletion fails, subsequent retries fail to properly remove all data before marking the namespace as deleted. This can affect any outstanding leases as well as potentially leaving unrelated storage entries around. This vulnerability is fixed in 2.5.3. | |
| Title | OpenBao's Namespace Deletion May Not Delete Data Properly | |
| Weaknesses | CWE-212 | |
| References |
| |
| Metrics |
cvssV4_0
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: GitHub_M
Published:
Updated: 2026-05-14T15:36:42.480Z
Reserved: 2026-04-25T01:53:21.583Z
Link: CVE-2026-42186
Updated: 2026-05-14T15:36:38.216Z
Status : Received
Published: 2026-05-14T15:16:46.337
Modified: 2026-05-14T15:16:46.337
Link: CVE-2026-42186
No data.
OpenCVE Enrichment
Updated: 2026-05-14T16:30:24Z
Github GHSA