FreeBSD VuXML: Documenting security issues in FreeBSD and the FreeBSD Ports Collection

Vaultwarden -- Muiltiple vulnerabilities

Affected packages
vaultwarden < 1.33.0

Details

VuXML ID 41711c0d-db27-11ef-873e-8447094a420f
Discovery 2025-01-25
Entry 2025-01-25

The Vaultwarden project reports:

RCE in the admin panel.

Getting access to the Admin Panel via CSRF.

Escalation of privilege via variable confusion in OrgHeaders trait.

References

URL https://github.com/dani-garcia/vaultwarden/releases/tag/1.33.0