{
  "affected": [
    {
      "ranges": [
        {
          "database_specific": {
            "extracted_events": [
              {
                "introduced": "0"
              },
              {
                "fixed": "2.6.0"
              }
            ],
            "source": [
              "AFFECTED_FIELD",
              "REFERENCES"
            ]
          },
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "90272575e5f58b3883fbb0ccb2238e9285722d1a"
            },
            {
              "fixed": "ee3aa4aff72c5176cf02af21eac7158899080878"
            },
            {
              "fixed": "03e3a243b6f07d17c60ce0a182adee7cf4c424eb"
            }
          ],
          "repo": "https://github.com/openbao/openbao",
          "type": "GIT"
        }
      ]
    }
  ],
  "aliases": [
    "GHSA-444v-8vxr-p36h"
  ],
  "database_specific": {
    "cna_assigner": "GitHub_M",
    "cwe_ids": [
      "CWE-532"
    ],
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/77xxx/CVE-2026-77285.json"
  },
  "details": "OpenBao is an open source identity-based secrets management system. Prior to 2.6.0, OpenBao Agent's exec rendering mode could write secrets from env_template to standard output when command/agent/exec/exec.go re-created the template runner after repeated rendering failures, primarily after num_retries was reached. A process supervisor, log collector, or local user able to read that output could obtain the rendered secret values. This issue is fixed in version 2.6.0.",
  "id": "CVE-2026-77285",
  "modified": "2026-09-25T03:30:52.075682036Z",
  "published": "2026-09-23T17:59:13.118Z",
  "references": [
    {
      "type": "WEB",
      "url": "https://github.com/openbao/openbao/releases/tag/v2.6.0"
    },
    {
      "type": "ADVISORY",
      "url": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/77xxx/CVE-2026-77285.json"
    },
    {
      "type": "ADVISORY",
      "url": "https://github.com/openbao/openbao/security/advisories/GHSA-444v-8vxr-p36h"
    },
    {
      "type": "ADVISORY",
      "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-77285"
    },
    {
      "type": "FIX",
      "url": "https://github.com/openbao/openbao/commit/90272575e5f58b3883fbb0ccb2238e9285722d1a"
    },
    {
      "type": "FIX",
      "url": "https://github.com/openbao/openbao/commit/ee3aa4aff72c5176cf02af21eac7158899080878"
    },
    {
      "type": "FIX",
      "url": "https://github.com/openbao/openbao/pull/3494"
    },
    {
      "type": "FIX",
      "url": "https://github.com/openbao/openbao/pull/3495"
    }
  ],
  "schema_version": "1.9.0",
  "severity": [
    {
      "score": "CVSS:4.0/AV:L/AC:L/AT:P/PR:H/UI:A/VC:L/VI:N/VA:N/SC:H/SI:H/SA:H",
      "type": "CVSS_V4"
    }
  ],
  "summary": "OpenBao Agent Writes Secrets to Stdout"
}