296,733
Total vulnerabilities in the database
A vulnerability was found in Undertow web server before 2.0.21. An information exposure of plain text credentials through log files because Connectors.executeRootHandler:402 logs the HttpServerExchange object at ERROR level using UndertowLogger.REQUEST_LOGGER.undertowRequestFailed(t, exchange)
| Software | From | Fixed in |
|---|---|---|
| redhat / undertow | - | 2.0.21 |
| redhat / virtualization | 4.0 | 4.0.x |
| redhat / virtualization_host | 4.0 | 4.0.x |
io.undertow / undertow-core
|
- | 2.0.21 |