Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:22296
HistoryJan 15, 2020 - 8:16 a.m.

Information Disclosure

2020-01-1508:16:15
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
14

EPSS

0.001

Percentile

48.2%

Apache Kafka connect-runtime is vulnerable to information disclosure. Improper usage of regex matching in the Connect REST API exposes plaintext secrets through the tasks endpoint if the config value contains additional characters.

References

EPSS

0.001

Percentile

48.2%