Description
When using tasks to read config files, there is a risk of database password disclosure. We recommend you upgrade to version 2.0.6 or higher.
References
https://lists.apache.org/thread/z7084r9cs2r26cszkkgjqpb5bhnxqssp
Mailing ListVendor Advisory
https://lists.apache.org/thread/z7084r9cs2r26cszkkgjqpb5bhnxqssp
Mailing ListVendor Advisory
Weaknesses
Primary
NVD-CWE-noinfo
134c704f-9b21-4f2e-91b3-4a467353bcc0
Secondary
CWE-200
CVSS impact metrics
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
7.5 · High
Information
Source identifier
Vulnerability status
Modified
Published
2022-11-24T15:15:17.127Z
3 years agoLast modified
2025-04-25T17:15:44.617Z
11 months ago