Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
In affected versions of the Octopus Kubernetes worker or agent, sensitive variables could be written to the Kubernetes script pod log in clear-text. This was identified in Version 2 however it was determined that this could also be achieved in Version 1 and the fix was applied to both versions accordingly.
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Vulnerability Type
通过日志文件的信息暴露
Vulnerability Title
Octopus Kubernetes 安全漏洞
Vulnerability Description
Octopus Kubernetes是Octopus公司的一个云原生设备管理系统。 Octopus Kubernetes存在安全漏洞,该漏洞源于敏感变量可以以明文形式写入 Kubernetes 脚本 pod 日志。
CVSS Information
N/A
Vulnerability Type
N/A