Lucene search

K
osvGoogleOSV:GHSA-6FQ2-X65V-V9H7
HistoryMay 24, 2022 - 5:02 p.m.

Ansible password prompts could expose passwords

2022-05-2417:02:07
Google
osv.dev
12

6.5 Medium

AI Score

Confidence

High

0.002 Low

EPSS

Percentile

60.2%

A data disclosure flaw was found in ansible. Password prompts in ansible-playbook and ansible-cli tools could expose passwords with special characters as they are not properly wrapped. A password with special characters is exposed starting with the first of these special characters. The highest threat from this vulnerability is to data confidentiality.

This CVE exists due to an incomplete fix for CVE-2019-10206.