Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-76jg-hr4p-qmfv

Опубликовано: 13 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 9.8

Описание

A sensitive data disclosure flaw was found in the way Logstash versions before 5.6.15 and 6.6.1 logs malformed URLs. If a malformed URL is specified as part of the Logstash configuration, the credentials for the URL could be inadvertently logged as part of the error message.

A sensitive data disclosure flaw was found in the way Logstash versions before 5.6.15 and 6.6.1 logs malformed URLs. If a malformed URL is specified as part of the Logstash configuration, the credentials for the URL could be inadvertently logged as part of the error message.

EPSS

Процентиль: 64%
0.00467
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-532

Связанные уязвимости

CVSS3: 9.8
nvd
почти 7 лет назад

A sensitive data disclosure flaw was found in the way Logstash versions before 5.6.15 and 6.6.1 logs malformed URLs. If a malformed URL is specified as part of the Logstash configuration, the credentials for the URL could be inadvertently logged as part of the error message.

CVSS3: 9.8
debian
почти 7 лет назад

A sensitive data disclosure flaw was found in the way Logstash version ...

EPSS

Процентиль: 64%
0.00467
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-532