{"type":"bundle","id":"bundle--85551f9e-12b3-52be-b267-17c31ba9adc1","objects":[{"type":"campaign","spec_version":"2.1","id":"campaign--527d0516-568a-5970-ba4e-cf867c07f226","created":"2026-09-20T19:33:47.317Z","modified":"2026-09-20T19:33:47.317Z","name":"Vault privilege escalation via slash injection in templated policy paths","description":"Vault privilege escalation via slash injection in templated policy paths. Upgrade to the patched release.","aliases":["CVE-2026-5006"],"first_seen":"2026-08-24T00:00:00.000Z","last_seen":"2026-08-24T12:00:00.000Z","objective":"Defensive public threat-intelligence record; see limitations and source references.","external_references":[{"source_name":"NVD CVE-2026-5006","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-5006"},{"source_name":"HOL Guard operator write-up","url":"https://hol.org/blog/cve-2026-5006-vault-slash-injection-templated-policy-paths"},{"source_name":"CVE Record CVE-2026-5006","url":"https://www.cve.org/CVERecord?id=CVE-2026-5006"}]}]}