Логотип exploitDog
bind:CVE-2024-41129
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2024-41129

Количество 2

Количество 2

nvd логотип

CVE-2024-41129

больше 1 года назад

The ops library is a Python framework for developing and testing Kubernetes and machine charms. The issue here is that ops passes the secret content as one of the args via CLI. This issue may affect any of the charms that are using: Juju (>=3.0), Juju secrets and not correctly capturing and processing `subprocess.CalledProcessError`. This vulnerability is fixed in 2.15.0.

CVSS3: 4.4
EPSS: Низкий
github логотип

GHSA-hcmv-jmqh-fjgm

больше 1 года назад

ops leaking secrets if `subprocess.CalledProcessError` happens with a `secret-*` CLI command

CVSS3: 4.4
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2024-41129

The ops library is a Python framework for developing and testing Kubernetes and machine charms. The issue here is that ops passes the secret content as one of the args via CLI. This issue may affect any of the charms that are using: Juju (>=3.0), Juju secrets and not correctly capturing and processing `subprocess.CalledProcessError`. This vulnerability is fixed in 2.15.0.

CVSS3: 4.4
0%
Низкий
больше 1 года назад
github логотип
GHSA-hcmv-jmqh-fjgm

ops leaking secrets if `subprocess.CalledProcessError` happens with a `secret-*` CLI command

CVSS3: 4.4
0%
Низкий
больше 1 года назад

Уязвимостей на страницу