Vulnerability Description
A flaw was found in Infinispan, when using JGroups with JDBC_PING. This issue occurs when an application inadvertently exposes sensitive information, such as configuration details or credentials, through logging mechanisms. This exposure can lead to unauthorized access and exploitation by malicious actors.
CVSS Score
MEDIUM
Related Weaknesses (CWE)
References
- https://access.redhat.com/errata/RHSA-2025:2663
- https://access.redhat.com/security/cve/CVE-2025-0736
- https://bugzilla.redhat.com/show_bug.cgi?id=2342233
FAQ
What is CVE-2025-0736?
CVE-2025-0736 is a vulnerability with a CVSS score of 5.5 (MEDIUM). A flaw was found in Infinispan, when using JGroups with JDBC_PING. This issue occurs when an application inadvertently exposes sensitive information, such as configuration details or credentials, thro...
How severe is CVE-2025-0736?
CVE-2025-0736 has been rated MEDIUM with a CVSS base score of 5.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2025-0736?
Check the references section above for vendor advisories and patch information. Review vendor security bulletins for remediation guidance.