THREATOPS
THREAT OPSThreat News › [NVD] CVE-2024-8775 (MEDIUM 5.5) — A flaw was found in Ansible, where sensitive information stored in Ansible Vault files can be exposed in plaintext during the execution of a playbook. This occurs when using tasks such as include_vars to load vaulted variables without setting the no_log: true parameter, resulting

[NVD] CVE-2024-8775 (MEDIUM 5.5) — A flaw was found in Ansible, where sensitive information stored in Ansible Vault files can be exposed in plaintext during the execution of a playbook. This occurs when using tasks such as include_vars to load vaulted variables without setting the no_log: true parameter, resulting

lownvdPublished 2024-09-14

CVE-2024-8775 CVSS: 5.5 MEDIUM Published: 2024-09-14T03:15:08.987

A flaw was found in Ansible, where sensitive information stored in Ansible Vault files can be exposed in plaintext during the execution of a playbook. This occurs when using tasks such as include_vars to load vaulted variables without setting the no_log: true parameter, resulting in sensitive data being printed in the playbook outp

Indicators of compromise

Original source: https://nvd.nist.gov/vuln/detail/CVE-2024-8775