Vulnerability Description
Insertion of Sensitive Information into Log File in Conda loguru prior to 0.5.3.
CVSS Score
4.3
MEDIUM
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Loguru Project | Loguru | < 0.5.3 |
Related Weaknesses (CWE)
References
- https://github.com/delgan/loguru/commit/ea39375e62f9b8f18e2ca798a5c0fb8c972b7eaaPatchThird Party Advisory
- https://huntr.dev/bounties/359bea50-2bc6-426a-b2f9-175d401b1ed0ExploitPatchThird Party Advisory
- https://github.com/delgan/loguru/commit/ea39375e62f9b8f18e2ca798a5c0fb8c972b7eaaPatchThird Party Advisory
- https://huntr.dev/bounties/359bea50-2bc6-426a-b2f9-175d401b1ed0ExploitPatchThird Party Advisory
FAQ
What is CVE-2022-0338?
CVE-2022-0338 is a vulnerability with a CVSS score of 4.3 (MEDIUM). Insertion of Sensitive Information into Log File in Conda loguru prior to 0.5.3.
How severe is CVE-2022-0338?
CVE-2022-0338 has been rated MEDIUM with a CVSS base score of 4.3/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2022-0338?
Check the references section above for vendor advisories and patch information. Affected products include: Loguru Project Loguru.