CVE-2026-27801
Description
A flaw was found in Vaultwarden. An authenticated attacker could bypass two-factor authentication (2FA) to perform sensitive actions. This bypass allows the attacker to access a user's API key or delete a user's vault and associated organizations where the user is an administrator or owner. This vulnerability could lead to unauthorized data manipulation and loss.
Statement
This MODERATE vulnerability allows an authenticated attacker to bypass 2FA for protected actions via faulty rate limiting. Exploitation requires network access and low privileges (valid account). Impact includes high confidentiality loss (API key exposure), high integrity loss (vault/org deletion), and high availability loss (data destruction). Red Hat ships Vaultwarden in its community products.
Understanding the Weakness (CWE)
Access Control
Technical Impact: Bypass Protection Mechanism
An attacker could perform an arbitrary number of authentication attempts using different passwords, and eventually gain access to the targeted account using a brute force attack.
Frequently Asked Questions
Not sure what something means? Check out our Security Glossary.
Want to get errata notifications? Sign up here.