Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-5w92-hhch-jqv7

Опубликовано: 16 янв. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 6.5

Описание

In affected versions of the Octopus Kubernetes worker or agent, sensitive variables could be written to the Kubernetes script pod log in clear-text. This was identified in Version 2 however it was determined that this could also be achieved in Version 1 and the fix was applied to both versions accordingly.

In affected versions of the Octopus Kubernetes worker or agent, sensitive variables could be written to the Kubernetes script pod log in clear-text. This was identified in Version 2 however it was determined that this could also be achieved in Version 1 and the fix was applied to both versions accordingly.

EPSS

Процентиль: 40%
0.00187
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-532

Связанные уязвимости

CVSS3: 6.5
nvd
около 1 года назад

In affected versions of the Octopus Kubernetes worker or agent, sensitive variables could be written to the Kubernetes script pod log in clear-text. This was identified in Version 2 however it was determined that this could also be achieved in Version 1 and the fix was applied to both versions accordingly.

EPSS

Процентиль: 40%
0.00187
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-532