Tag
high
advisory
Vault Token Leak via Authorization Header Forwarding
2 rules 1 TTP 1 CVE 1 IOCVault instances configured to pass through the 'Authorization' header may forward Vault tokens to auth plugin backends when the header is used for authentication, potentially leading to token compromise; this vulnerability is tracked as CVE-2026-4525 and patched in versions 2.0.0, 1.21.5, 1.20.10, and 1.19.16.
vault
token-leak
authorization
cve-2026-4525
2r
1t
1c
1i
high
advisory
Kyverno Service Account Token Leak via API Call
2 rules 1 TTP 5 IOCsKyverno's apiCall serviceCall helper implicitly injects the Kyverno controller service account token into requests when policies lack an explicit Authorization header, allowing exfiltration to attacker-controlled endpoints and unauthorized actions.
kyverno
token-leak
cloud
2r
1t
5i