A flaw was found in the Ansible Engine when using module_args. Tasks executed with check mode (–check-mode) do not properly neutralize sensitive data exposed in the event data. This flaw allows unauthorized users to read this data. The highest threat from this vulnerability is to confidentiality.
CPE | Name | Operator | Version |
---|---|---|---|
debian_linux | eq | 10.0 | |
ansible_engine | ge | 2.8.0 | |
ansible_engine | lt | 2.8.14 | |
ansible_engine | ge | 2.9.0 | |
ansible_engine | lt | 2.9.12 |