CVEs affecting projects tracked on Release Alert, from NVD & OSV.
CVE-2020-14332 — MEDIUM severity vulnerability | Release Alert
CVE-2020-14332
5.5
MEDIUMCVSS v3
Published
September 11, 2020
CVSS v2
2.1 LOW
Affected
2 projects
Assigned by
Red Hat
Severity scale
010
Description
A flaw was found in the Ansible Engine when using module_args. Tasks executed with check mode (--check-mode) do not properly neutralize sensitive data exposed in the event data. This flaw allows unauthorized users to read this data. The highest threat from this vulnerability is to confidentiality.
GitHubAnsible is a radically simple IT automation platform that makes your applications and systems easier to deploy and maintain. Automate everything from code deployment to network configuration to cloud management, in a language that approaches plain English, using SSH, with no agents to install on remote systems. https://docs.ansible.com.