Логотип exploitDog
bind:CVE-2025-27391
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2025-27391

Количество 3

Количество 3

redhat логотип

CVE-2025-27391

5 месяцев назад

Insertion of Sensitive Information into Log File vulnerability in Apache ActiveMQ Artemis. All the values of the broker properties are logged when the org.apache.activemq.artemis.core.config.impl.ConfigurationImpl logger has the debug level enabled. This issue affects Apache ActiveMQ Artemis: from 1.5.1 before 2.40.0. It can be mitigated by restricting log access to only trusted users. Users are recommended to upgrade to version 2.40.0, which fixes the issue.

CVSS3: 5.5
EPSS: Низкий
nvd логотип

CVE-2025-27391

5 месяцев назад

Insertion of Sensitive Information into Log File vulnerability in Apache ActiveMQ Artemis. All the values of the broker properties are logged when the org.apache.activemq.artemis.core.config.impl.ConfigurationImpl logger has the debug level enabled. This issue affects Apache ActiveMQ Artemis: from 1.5.1 before 2.40.0. It can be mitigated by restricting log access to only trusted users. Users are recommended to upgrade to version 2.40.0, which fixes the issue.

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-pm4j-p7pm-fpvx

5 месяцев назад

Apache ActiveMQ Artemis Vulnerable to Insertion of Sensitive Information into Log File

CVSS3: 6.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
redhat логотип
CVE-2025-27391

Insertion of Sensitive Information into Log File vulnerability in Apache ActiveMQ Artemis. All the values of the broker properties are logged when the org.apache.activemq.artemis.core.config.impl.ConfigurationImpl logger has the debug level enabled. This issue affects Apache ActiveMQ Artemis: from 1.5.1 before 2.40.0. It can be mitigated by restricting log access to only trusted users. Users are recommended to upgrade to version 2.40.0, which fixes the issue.

CVSS3: 5.5
0%
Низкий
5 месяцев назад
nvd логотип
CVE-2025-27391

Insertion of Sensitive Information into Log File vulnerability in Apache ActiveMQ Artemis. All the values of the broker properties are logged when the org.apache.activemq.artemis.core.config.impl.ConfigurationImpl logger has the debug level enabled. This issue affects Apache ActiveMQ Artemis: from 1.5.1 before 2.40.0. It can be mitigated by restricting log access to only trusted users. Users are recommended to upgrade to version 2.40.0, which fixes the issue.

CVSS3: 6.5
0%
Низкий
5 месяцев назад
github логотип
GHSA-pm4j-p7pm-fpvx

Apache ActiveMQ Artemis Vulnerable to Insertion of Sensitive Information into Log File

CVSS3: 6.5
0%
Низкий
5 месяцев назад

Уязвимостей на страницу