Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:39969
HistoryMar 28, 2023 - 5:26 a.m.

Information Disclosore

2023-03-2805:26:13
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
6
directus
vulnerability
logger.ts
information disclosure
sensitive information

EPSS

0

Percentile

15.5%

directus is vulnerable to Information Disclosure. The vulnerability exists due to pinoHTTP in logger.ts because the directus_refresh_token is not properly redacted which allows an attacker to gain sensitive information through the log files.

EPSS

0

Percentile

15.5%

Related for VERACODE:39969