Back

HIGH

Information disclosure via audit records for OpenAPI requests in Guardian/CMC before 23.4.1

Published Apr 10, 2024

Description

Audit records for OpenAPI requests may include sensitive information.

This could lead to unauthorized accesses and privilege escalation.

Affected products

Remediation

Vendor solution

Upgrade to v23.4.1 or later.

Weaknesses (1)

References (2)

Change history (0)

No recorded changes yet.

Sources

CVE.org / MITRE

Status PUBLISHED
Assigner Nozomi
Published Apr 10, 2024
Updated Sep 20, 2024
Reserved Dec 18, 2023

CISA Vulnrichment

Updated Apr 10, 2024

NVD

Status Deferred
Modified Jun 17, 2026

Red Hat

No data

ENISA EUVD

Assigner Nozomi
Published Apr 10, 2024
Updated Sep 20, 2024

GitHub

No data