5.5
CVSSv3

CVE-2023-29471

Published: 27/04/2023 Updated: 05/05/2023
CVSS v3 Base Score: 5.5 | Impact Score: 3.6 | Exploitability Score: 1.8
VMScore: 0

Vulnerability Summary

Lightbend Alpakka Kafka prior to 5.0.0 logs its configuration as debug information, and thus log files may contain credentials (if plain cleartext login is configured). This occurs in akka.kafka.internal.KafkaConsumerActor.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

lightbend alpakka kafka