Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-c363-2f5p-c4cv

Опубликовано: 15 нояб. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 4.9

Описание

A vulnerability was found in the OAuth-server. OAuth-server logs the OAuth2 client secret when the logLevel is Debug higher for OIDC/GitHub/GitLab/Google IDPs login options.

A vulnerability was found in the OAuth-server. OAuth-server logs the OAuth2 client secret when the logLevel is Debug higher for OIDC/GitHub/GitLab/Google IDPs login options.

EPSS

Процентиль: 34%
0.00136
Низкий

4.9 Medium

CVSS3

Дефекты

CWE-1295

Связанные уязвимости

CVSS3: 4.9
redhat
около 1 года назад

A vulnerability was found in the OAuth-server. OAuth-server logs the OAuth2 client secret when the logLevel is Debug higher for OIDC/GitHub/GitLab/Google IDPs login options.

CVSS3: 4.9
nvd
около 1 года назад

A vulnerability was found in the OAuth-server. OAuth-server logs the OAuth2 client secret when the logLevel is Debug higher for OIDC/GitHub/GitLab/Google IDPs login options.

EPSS

Процентиль: 34%
0.00136
Низкий

4.9 Medium

CVSS3

Дефекты

CWE-1295