Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-p999-j4hq-pmj3

Опубликовано: 09 апр. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 6.5

Описание

Improper restriction of environment variables in Elastic Defend can lead to exposure of sensitive information such as API keys and tokens via automatic transmission of unfiltered environment variables to the stack.

Improper restriction of environment variables in Elastic Defend can lead to exposure of sensitive information such as API keys and tokens via automatic transmission of unfiltered environment variables to the stack.

EPSS

Процентиль: 47%
0.00237
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-532

Связанные уязвимости

CVSS3: 6.5
nvd
10 месяцев назад

Improper restriction of environment variables in Elastic Defend can lead to exposure of sensitive information such as API keys and tokens via automatic transmission of unfiltered environment variables to the stack.

EPSS

Процентиль: 47%
0.00237
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-532