The collection remote for pulp_ansible stores tokens in plaintext instead of using pulp's encrypted field and exposes them in read/write mode via the API () instead of marking it as write only.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
pulpproject pulp ansible - |
||
redhat satellite 6.0 |
||
redhat ansible automation platform 2.0 |
||
redhat update infrastructure 3.0 |