Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:21559
HistorySep 24, 2019 - 12:19 a.m.

Information Disclosure

2019-09-2400:19:31
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
21

0.001 Low

EPSS

Percentile

39.7%

cri-o is vulnerable to information disclosure. The vulnerability exists as it does not enforce TLS when sending username+password credentials to token servers leading to credential disclosure.