- Fixed two security vulnerabilities: IP address disclosure (CVE‑2021‑3024) and mount‑path disclosure (CVE‑2020‑25594) affecting Vault and Vault Enterprise.
- Improved Raft storage (Enterprise) to allow listing peers on DR secondary nodes via an authenticated DR operation token.
- Bug fixes ensure unauthenticated requests no longer expose internal IPs and provide consistent responses for sys/internal endpoints regardless of mount existence.