Vulnerability Description
Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Payara Platform Payara Server (Logging modules) allows Sensitive credentials posted in plain-text on the server log.This issue affects Payara Server: from 6.0.0 before 6.18.0, from 6.2022.1 before 6.2024.9, from 5.20.0 before 5.67.0, from 5.2020.2 before 5.2022.5, from 4.1.2.191.0 before 4.1.2.191.50.
Related Weaknesses (CWE)
References
- https://docs.payara.fish/community/docs/Release%20Notes/Release%20Notes%206.2024
- https://docs.payara.fish/enterprise/docs/Release%20Notes/Release%20Notes%206.18.
FAQ
What is CVE-2024-8097?
CVE-2024-8097 is a documented vulnerability. Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Payara Platform Payara Server (Logging modules) allows Sensitive credentials posted in plain-text on the server log.This iss...
How severe is CVE-2024-8097?
CVSS scoring is not yet available for CVE-2024-8097. Check NVD for updates.
Is there a patch for CVE-2024-8097?
Check the references section above for vendor advisories and patch information. Review vendor security bulletins for remediation guidance.