2.7
CVSSv3

CVE-2023-5384

Published: 18/12/2023 Updated: 25/01/2024
CVSS v3 Base Score: 2.7 | Impact Score: 1.4 | Exploitability Score: 1.2
VMScore: 0

Vulnerability Summary

A flaw was found in Infinispan. When serializing the configuration for a cache to XML/JSON/YAML, which contains credentials (JDBC store with connection pooling, remote store), the credentials are returned in clear text as part of the configuration.

Vulnerable Product Search on Vulmon Subscribe to Product

redhat data grid

redhat jboss data grid -

infinispan infinispan -

Vendor Advisories

Synopsis Important: Red Hat Data Grid 846 security update Type/Severity Security Advisory: Important Topic An update for Red Hat Data Grid 8 is now availableRed Hat Product Security has rated this update as having a security impact of Important A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating ...