Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:35129
HistoryApr 16, 2022 - 4:35 p.m.

Information Disclosure

2022-04-1616:35:27
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
15
python-oslo-utils
information disclosure
improper parsing
passwords

EPSS

0.001

Percentile

47.0%

python-oslo-utils is vulnerable to information disclosure. The vulnerability exists because improper parsing, passwords with a double quote ( " ) in them cause incorrect masking in debug logs, causing any part of the password after the double quote to be plaintext.