Lucene search

K
osvGoogleOSV:CVE-2019-3888
HistoryJun 12, 2019 - 2:29 p.m.

CVE-2019-3888

2019-06-1214:29:04
Google
osv.dev
11

AI Score

6.4

Confidence

Low

EPSS

0.02

Percentile

89.0%

A vulnerability was found in Undertow web server before 2.0.21. An information exposure of plain text credentials through log files because Connectors.executeRootHandler:402 logs the HttpServerExchange object at ERROR level using UndertowLogger.REQUEST_LOGGER.undertowRequestFailed(t, exchange)

AI Score

6.4

Confidence

Low

EPSS

0.02

Percentile

89.0%