Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:21592
HistoryOct 01, 2019 - 12:16 a.m.

Information Disclosure

2019-10-0100:16:05
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
18

0.003 Low

EPSS

Percentile

68.4%

undertow is vulnerable to information disclosure. The vulnerability exists as the DEBUG log for io.undertow.request.security leaks credentials to log files if it is enabled.

References