Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:36969
HistorySep 08, 2022 - 3:45 a.m.

Information Disclosure

2022-09-0803:45:27
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
27
rancher
information disclosure
credentials
cluster template
api tokens

0.001 Low

EPSS

Percentile

37.0%

github.com/rancher/rancher is vulnerable to information disclosure. The vulnerability exists because of the lack of sanitization in credentials in cluster template answers of cluster_store.go, leading to plaintext storage and exposure of credentials, passwords and API tokens.

0.001 Low

EPSS

Percentile

37.0%

Related for VERACODE:36969