A flaw was found in Infinispan. When serializing the configuration for a cache to XML/JSON/YAML, which contains credentials (JDBC store with connection pooling, remote store), the credentials are returned in clear text as part of the configuration.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
redhat data grid |
||
redhat jboss data grid - |
||
infinispan infinispan - |