Описание
A flaw was found in Infinispan CLI. A sensitive password, decoded from a Base64-encoded Kubernetes secret, is processed in plaintext and included in a command string that may expose the data in an error message when a command is not found.
EPSS
Процентиль: 2%
0.00015
Низкий
6.2 Medium
CVSS3
Дефекты
CWE-209
Связанные уязвимости
CVSS3: 6.2
redhat
19 дней назад
A flaw was found in Infinispan CLI. A sensitive password, decoded from a Base64-encoded Kubernetes secret, is processed in plaintext and included in a command string that may expose the data in an error message when a command is not found.
CVSS3: 6.2
github
19 дней назад
Infinispan CLI vulnerable to Generation of Error Message Containing Sensitive Information
EPSS
Процентиль: 2%
0.00015
Низкий
6.2 Medium
CVSS3
Дефекты
CWE-209