HC Vault / OpenBao token exfiltration when decrypting untrusted SOPS-encrypted files
details
- Finding IDs
- F-MOZILLA-SOPS-004
- GHSA
- GHSA-jgf3-f6rg-8x3h
- Status
- mitigation available; configuration required
- Note
- SOPS 3.13.0 adds SOPS_HC_VAULT_ALLOWLIST via PR #2164. Its default remains all, preserving unrestricted forwarding; set it to none or a restrictive list of trusted Vault/OpenBao endpoints to mitigate token exfiltration through untrusted encrypted-file metadata.
- Upstream title
- HC Vault / OpenBao token exfiltration when decrypting untrusted SOPS-encrypted files
- Upstream CWE
- CWE-522, CWE-918
- Upstream publication
- Upstream updated
- Metadata fetched
- Upstream @1seal credit
- @1seal: reporter (accepted)
F-MOZILLA-SOPS-004: Outbound request trust. Untrusted Vault metadata chooses the destination receiving a local token. Reviewed 24 Sep 2026. Mechanism assessed by 1seal.
Mechanism source for F-MOZILLA-SOPS-004
Security area (1seal assessment): Authorization. Untrusted Vault metadata chooses the destination receiving a local token. Reviewed 24 Sep 2026.