CVE advisoryCRITICAL
CVE-2025-13357
Vault Terraform Provider LDAP Auth Method Authentication Bypass Vulnerability
Halo Surface Signal: 2 out of 5 — less likely to be public-facing.
A vulnerability in Vault's Terraform Provider could allow authentication bypass if an LDAP server permits unauthenticated binds due to an incorrect default configuration. This could grant unauthorized access to Vault, potentially exposing sensitive data and allowing configuration changes.