<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
<channel>
  <title>CVE Daily – Ansible</title>
  <link>https://cvedaily.com/pages/tags/ansible.html</link>
  <atom:link href="https://cvedaily.com/feed-tags/ansible.xml" rel="self" type="application/rss+xml"/>
  <description>CVE Daily – Ansible</description>
  <language>en</language>
  <lastBuildDate>Wed, 03 Jun 2026 21:26:57 +0000</lastBuildDate>
  <item>
    <title>[Medium] CVE-2025-57847 – A container privilege escalation flaw was found in certain Ansible Automation Pl...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-57847</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-57847</guid>
    <pubDate>Wed, 08 Apr 2026 14:16:25 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2025-57847</strong></p>
  <p>A container privilege escalation flaw was found in certain Ansible Automation Platform images. This issue arises from the /etc/passwd file being created with group-writable permissions during the build process. In certain conditions, an attacker who can execute commands within an affected container, even as a non-root user, can leverage their membership in the root group to modify the /etc/passwd…</p>
  <p><strong>CVSS:</strong> 6.4 · <strong>CWE:</strong> CWE-276</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-57847">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2025-9909 – A flaw was found in the Red Hat Ansible Automation Platform Gateway route creati...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-9909</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-9909</guid>
    <pubDate>Fri, 27 Feb 2026 08:17:08 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2025-9909</strong></p>
  <p>A flaw was found in the Red Hat Ansible Automation Platform Gateway route creation component. This vulnerability allows credential theft via the creation of misleading routes using a double-slash (//) prefix in the gateway_path. A malicious or socially engineered administrator can configure a honey-pot route to intercept and exfiltrate user credentials, potentially maintaining persistent access o…</p>
  <p><strong>CVSS:</strong> 6.7 · <strong>CWE:</strong> CWE-647</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-9909">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2025-9908 – A flaw was found in the Red Hat Ansible Automation Platform, Event-Driven Ansibl...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-9908</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-9908</guid>
    <pubDate>Fri, 27 Feb 2026 08:17:07 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2025-9908</strong></p>
  <p>A flaw was found in the Red Hat Ansible Automation Platform, Event-Driven Ansible (EDA) Event Streams. This vulnerability allows an authenticated user to gain access to sensitive internal infrastructure headers (such as X-Trusted-Proxy and X-Envoy-*) and event stream URLs via crafted requests and job templates. By exfiltrating these headers, an attacker could spoof trusted requests, escalate priv…</p>
  <p><strong>CVSS:</strong> 6.7 · <strong>CWE:</strong> CWE-200</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-9908">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2025-9907 – A flaw was found in the Red Hat Ansible Automation Platform, Event-Driven Ansibl...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-9907</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-9907</guid>
    <pubDate>Fri, 27 Feb 2026 08:17:06 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2025-9907</strong></p>
  <p>A flaw was found in the Red Hat Ansible Automation Platform, Event-Driven Ansible (EDA) Event Stream API. This vulnerability allows exposure of sensitive client credentials and internal infrastructure headers via the test_headers field when an event stream is in test mode. The possible outcome includes leakage of internal infrastructure details, accidental disclosure of user or system credentials…</p>
  <p><strong>CVSS:</strong> 6.7 · <strong>CWE:</strong> CWE-200</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-9907">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2026-0598 – A security flaw was identified in the Ansible Lightspeed API conversation endpoi...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-0598</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-0598</guid>
    <pubDate>Fri, 06 Feb 2026 06:15:49 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2026-0598</strong></p>
  <p>A security flaw was identified in the Ansible Lightspeed API conversation endpoints that handle AI chat interactions. The APIs do not properly verify whether a conversation identifier belongs to the authenticated user making the request. As a result, an attacker with valid credentials could access or influence conversations owned by other users. This exposes sensitive conversation data and allows…</p>
  <p><strong>CVSS:</strong> 4.2 · <strong>CWE:</strong> CWE-283</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-0598">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-14377 – A security issue was discovered within the legacy Ansible playbook component of ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-14377</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-14377</guid>
    <pubDate>Tue, 20 Jan 2026 14:16:07 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-14377</strong></p>
  <p>A security issue was discovered within the legacy Ansible playbook component of Verve Asset Manager, caused by plaintext secrets incorrectly stored when a playbook is running. This component has been retired and has been optional since the 1.36 release in 2024.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-312</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-14377">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-14025 – A flaw was found in Ansible Automation Platform (AAP). Read-only scoped OAuth2 A...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-14025</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-14025</guid>
    <pubDate>Thu, 08 Jan 2026 14:15:56 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-14025</strong></p>
  <p>A flaw was found in Ansible Automation Platform (AAP). Read-only scoped OAuth2 API Tokens in AAP, are enforced at the Gateway level for Gateway-specific operations. However, this vulnerability allows read-only tokens to perform write operations on backend services (e.g., Controller, Hub, EDA). If this flaw were exploited, an attacker‘s capabilities would only be limited by role based access contr…</p>
  <p><strong>CVSS:</strong> 8.5 · <strong>CWE:</strong> CWE-279</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-14025">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2025-14010 – A flaw was found in ansible-collection-community-general. This vulnerability all...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-14010</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-14010</guid>
    <pubDate>Thu, 04 Dec 2025 10:16:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2025-14010</strong></p>
  <p>A flaw was found in ansible-collection-community-general. This vulnerability allows for information exposure (IE) of sensitive credentials, specifically plaintext passwords, via verbose output when running Ansible with debug modes. Attackers with access to logs could retrieve these secrets and potentially compromise Keycloak accounts or administrative access.</p>
  <p><strong>CVSS:</strong> 5.5 · <strong>CWE:</strong> CWE-532</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-14010">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2025-5988 – A flaw was found in the Ansible aap-gateway. Cross-site request forgery (CSRF) o...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-5988</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-5988</guid>
    <pubDate>Mon, 04 Aug 2025 16:15:34 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2025-5988</strong></p>
  <p>A flaw was found in the Ansible aap-gateway. Cross-site request forgery (CSRF) origin checking is not done on requests from the gateway to external components, such as the controller, hub, and eda.</p>
  <p><strong>CVSS:</strong> 5.3 · <strong>CWE:</strong> CWE-352</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-5988">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2025-7738 – A flaw was found in Ansible Automation Platform (AAP) where the Gateway API retu...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-7738</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-7738</guid>
    <pubDate>Thu, 31 Jul 2025 14:15:35 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2025-7738</strong></p>
  <p>A flaw was found in Ansible Automation Platform (AAP) where the Gateway API returns the client secret for certain GitHub Enterprise authenticators in clear text. This vulnerability affects administrators or auditors accessing authenticator configurations. While access is limited to privileged users, the clear text exposure of sensitive credentials increases the risk of accidental leaks or misuse.</p>
  <p><strong>CVSS:</strong> 4.4 · <strong>CWE:</strong> CWE-312</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-7738">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Low] CVE-2025-53862 – A flaw was found in Ansible. Three API endpoints are accessible and return verbo...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-53862</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-53862</guid>
    <pubDate>Fri, 11 Jul 2025 13:15:59 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk low">Low</span> CVE-2025-53862</strong></p>
  <p>A flaw was found in Ansible. Three API endpoints are accessible and return verbose, unauthenticated responses. This flaw allows a malicious user to access data that may contain important information.</p>
  <p><strong>CVSS:</strong> 3.5 · <strong>CWE:</strong> CWE-497</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-53862">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Low] CVE-2025-53861 – A flaw was found in Ansible. Sensitive cookies without security flags over non-e...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-53861</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-53861</guid>
    <pubDate>Fri, 11 Jul 2025 13:15:59 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk low">Low</span> CVE-2025-53861</strong></p>
  <p>A flaw was found in Ansible. Sensitive cookies without security flags over non-encrypted channels can lead to Man-in-the-Middle (MitM) and Cross-site scripting (XSS) attacks allowing attackers to read transmitted data.</p>
  <p><strong>CVSS:</strong> 3.1 · <strong>CWE:</strong> CWE-319</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-53861">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-49521 – A flaw was found in the EDA component of the Ansible Automation Platform, where ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-49521</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-49521</guid>
    <pubDate>Mon, 30 Jun 2025 21:15:31 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-49521</strong></p>
  <p>A flaw was found in the EDA component of the Ansible Automation Platform, where user-supplied Git branch or refspec values are evaluated as Jinja2 templates. This vulnerability allows authenticated users to inject expressions that execute commands or access sensitive files on the EDA worker. In OpenShift, it can lead to service account token theft.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-94</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-49521">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-49520 – A flaw was found in Ansible Automation Platform’s EDA component where user-suppl...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-49520</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-49520</guid>
    <pubDate>Mon, 30 Jun 2025 21:15:30 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-49520</strong></p>
  <p>A flaw was found in Ansible Automation Platform’s EDA component where user-supplied Git URLs are passed unsanitized to the git ls-remote command. This vulnerability allows an authenticated attacker to inject arguments and execute arbitrary commands on the EDA worker. In Kubernetes/OpenShift environments, this can lead to service account token theft and cluster access.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-88</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-49520">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2025-2877 – A flaw was found in the Ansible Automation Platform's Event-Driven Ansible. In c...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-2877</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-2877</guid>
    <pubDate>Fri, 28 Mar 2025 14:15:21 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2025-2877</strong></p>
  <p>A flaw was found in the Ansible Automation Platform's Event-Driven Ansible. In configurations where verbosity is set to "debug", inventory passwords are exposed in plain text when starting a rulebook activation. This issue exists for any "debug" action in a rulebook and also affects Event Streams.</p>
  <p><strong>CVSS:</strong> 6.5 · <strong>CWE:</strong> CWE-1295</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-2877">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-1801 – A flaw was found in the Ansible aap-gateway. Concurrent requests handled by the ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-1801</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-1801</guid>
    <pubDate>Mon, 03 Mar 2025 15:15:16 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-1801</strong></p>
  <p>A flaw was found in the Ansible aap-gateway. Concurrent requests handled by the gateway grpc service can result in concurrency issues due to race condition requests against the proxy. This issue potentially allows a less privileged user to obtain the JWT of a greater privileged user, enabling the server to be jeopardized. A user session or confidential data might be vulnerable.</p>
  <p><strong>CVSS:</strong> 8.1 · <strong>CWE:</strong> CWE-362</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-1801">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-53979 – ibm.ibm_zhmc is an Ansible collection for the IBM Z HMC. The Ansible collection ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-53979</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-53979</guid>
    <pubDate>Fri, 29 Nov 2024 19:15:09 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-53979</strong></p>
  <p>ibm.ibm_zhmc is an Ansible collection for the IBM Z HMC. The Ansible collection "ibm.ibm_zhmc" writes password-like properties in clear text into its log file and into the output returned by some of its Ansible module in the following cases: 1. The 'boot_ftp_password' and 'ssc_master_pw' properties are passed as input to the zhmc_partition Ansible module. 2. The 'ssc_master_pw' and 'zaware_master…</p>
  <p><strong>CVSS:</strong> 8.2 · <strong>CWE:</strong> CWE-312</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-53979">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2024-11483 – A vulnerability was found in the Ansible Automation Platform (AAP). This flaw al...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-11483</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-11483</guid>
    <pubDate>Mon, 25 Nov 2024 04:15:03 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2024-11483</strong></p>
  <p>A vulnerability was found in the Ansible Automation Platform (AAP). This flaw allows attackers to escalate privileges by improperly leveraging read-scoped OAuth2 tokens to gain write access. This issue affects API endpoints that rely on ansible_base.oauth2_provider for OAuth2 authentication. While the impact is limited to actions within the user’s assigned permissions, it undermines scoped access…</p>
  <p><strong>CVSS:</strong> 5.0 · <strong>CWE:</strong> CWE-284</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-11483">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2024-11079 – A flaw was found in Ansible-Core. This vulnerability allows attackers to bypass ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-11079</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-11079</guid>
    <pubDate>Tue, 12 Nov 2024 00:15:15 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2024-11079</strong></p>
  <p>A flaw was found in Ansible-Core. This vulnerability allows attackers to bypass unsafe content protections using the hostvars object to reference and execute templated content. This issue can lead to arbitrary code execution if remote data or module outputs are improperly templated within playbooks.</p>
  <p><strong>CVSS:</strong> 5.5 · <strong>CWE:</strong> CWE-20</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-11079">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2024-9902 – A flaw was found in Ansible. The ansible-core `user` module can allow an unprivi...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-9902</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-9902</guid>
    <pubDate>Wed, 06 Nov 2024 10:15:06 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2024-9902</strong></p>
  <p>A flaw was found in Ansible. The ansible-core `user` module can allow an unprivileged user to silently create or replace the contents of any file on any system path and take ownership of it when a privileged user executes the `user` module against the unprivileged user's home directory. If the unprivileged user has traversal permissions on the directory containing the exploited target file, they…</p>
  <p><strong>CVSS:</strong> 6.3 · <strong>CWE:</strong> CWE-863</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-9902">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2024-9620 – A flaw was found in Event-Driven Automation (EDA) in Ansible Automation Platform...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-9620</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-9620</guid>
    <pubDate>Tue, 08 Oct 2024 17:15:57 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2024-9620</strong></p>
  <p>A flaw was found in Event-Driven Automation (EDA) in Ansible Automation Platform (AAP), which lacks encryption of sensitive information. An attacker with network access could exploit this vulnerability by sniffing the plaintext data transmitted between the EDA and AAP. An attacker with system access could exploit this vulnerability by reading the plaintext data stored in EDA and AAP databases.</p>
  <p><strong>CVSS:</strong> 5.3 · <strong>CWE:</strong> CWE-319</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-9620">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2024-8775 – A flaw was found in Ansible, where sensitive information stored in Ansible Vault...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-8775</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-8775</guid>
    <pubDate>Sat, 14 Sep 2024 03:15:08 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2024-8775</strong></p>
  <p>A flaw was found in Ansible, where sensitive information stored in Ansible Vault files can be exposed in plaintext during the execution of a playbook. This occurs when using tasks such as include_vars to load vaulted variables without setting the no_log: true parameter, resulting in sensitive data being printed in the playbook output or logs. This can lead to the unintentional disclosure of secre…</p>
  <p><strong>CVSS:</strong> 5.5 · <strong>CWE:</strong> CWE-532</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-8775">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2024-6840 – An improper authorization flaw exists in the Ansible Automation Controller. This...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-6840</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-6840</guid>
    <pubDate>Thu, 12 Sep 2024 17:15:05 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2024-6840</strong></p>
  <p>An improper authorization flaw exists in the Ansible Automation Controller. This flaw allows an attacker using the k8S API server to send an HTTP request with a service account token mounted via `automountServiceAccountToken: true`, resulting in privilege escalation to a service account.</p>
  <p><strong>CVSS:</strong> 6.6 · <strong>CWE:</strong> CWE-285</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-6840">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2024-40629 – JumpServer is an open-source Privileged Access Management (PAM) tool that provid...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-40629</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-40629</guid>
    <pubDate>Thu, 18 Jul 2024 17:15:04 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2024-40629</strong></p>
  <p>JumpServer is an open-source Privileged Access Management (PAM) tool that provides DevOps and IT teams with on-demand and secure access to SSH, RDP, Kubernetes, Database and RemoteApp endpoints through a web browser. An attacker can exploit the Ansible playbook to write arbitrary files, leading to remote code execution (RCE) in the Celery container. The Celery container runs as root and has datab…</p>
  <p><strong>CVSS:</strong> 10.0 · <strong>CWE:</strong> CWE-22</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-40629">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2024-40628 – JumpServer is an open-source Privileged Access Management (PAM) tool that provid...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-40628</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-40628</guid>
    <pubDate>Thu, 18 Jul 2024 17:15:04 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2024-40628</strong></p>
  <p>JumpServer is an open-source Privileged Access Management (PAM) tool that provides DevOps and IT teams with on-demand and secure access to SSH, RDP, Kubernetes, Database and RemoteApp endpoints through a web browser. An attacker can exploit the ansible playbook to read arbitrary files in the celery container, leading to sensitive information disclosure. The Celery container runs as root and has d…</p>
  <p><strong>CVSS:</strong> 10.0 · <strong>CWE:</strong> CWE-22</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-40628">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-36110 – ansibleguy-webui is an open source WebUI for using Ansible. Multiple forms in ve...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-36110</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-36110</guid>
    <pubDate>Tue, 28 May 2024 19:15:11 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-36110</strong></p>
  <p>ansibleguy-webui is an open source WebUI for using Ansible. Multiple forms in versions < 0.0.21 allowed injection of HTML elements. These are returned to the user after executing job actions and thus evaluated by the browser. These issues have been addressed in version 0.0.21 (0.0.21.post2 on pypi). Users are advised to upgrade. There are no known workarounds for these issues.</p>
  <p><strong>CVSS:</strong> 8.2 · <strong>CWE:</strong> CWE-79</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-36110">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-1657 – A flaw was found in the ansible automation platform. An insecure WebSocket conne...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-1657</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-1657</guid>
    <pubDate>Thu, 25 Apr 2024 17:15:48 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-1657</strong></p>
  <p>A flaw was found in the ansible automation platform. An insecure WebSocket connection was being used in installation from the Ansible rulebook EDA server. An attacker that has access to any machine in the CIDR block could download all rulebook data from the WebSocket, resulting in loss of confidentiality and integrity of the system.</p>
  <p><strong>CVSS:</strong> 8.1 · <strong>CWE:</strong> CWE-319</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-1657">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2024-29202 – JumpServer is an open source bastion host and an operation and maintenance secur...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-29202</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-29202</guid>
    <pubDate>Fri, 29 Mar 2024 15:15:12 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2024-29202</strong></p>
  <p>JumpServer is an open source bastion host and an operation and maintenance security audit system. Attackers can exploit a Jinja2 template injection vulnerability in JumpServer's Ansible to execute arbitrary code within the Celery container. Since the Celery container runs with root privileges and has database access, attackers could steal sensitive information from all hosts or manipulate the dat…</p>
  <p><strong>CVSS:</strong> 9.9 · <strong>CWE:</strong> CWE-94</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-29202">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2024-29201 – JumpServer is an open source bastion host and an operation and maintenance secur...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-29201</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-29201</guid>
    <pubDate>Fri, 29 Mar 2024 15:15:11 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2024-29201</strong></p>
  <p>JumpServer is an open source bastion host and an operation and maintenance security audit system. Attackers can bypass the input validation mechanism in JumpServer's Ansible to execute arbitrary code within the Celery container. Since the Celery container runs with root privileges and has database access, attackers could steal sensitive information from all hosts or manipulate the database. This…</p>
  <p><strong>CVSS:</strong> 9.9 · <strong>CWE:</strong> CWE-94</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-29201">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2024-0690 – An information disclosure flaw was found in ansible-core due to a failure to res...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-0690</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-0690</guid>
    <pubDate>Tue, 06 Feb 2024 12:15:55 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2024-0690</strong></p>
  <p>An information disclosure flaw was found in ansible-core due to a failure to respect the ANSIBLE_NO_LOG configuration in some scenarios. Information is still included in the output in certain tasks, such as loop items. Depending on the task, this issue may include sensitive information, such as decrypted secret values.</p>
  <p><strong>CVSS:</strong> 5.0 · <strong>CWE:</strong> CWE-117</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-0690">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2023-5115 – An absolute path traversal attack exists in the Ansible automation platform. Thi...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-5115</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-5115</guid>
    <pubDate>Mon, 18 Dec 2023 14:15:10 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2023-5115</strong></p>
  <p>An absolute path traversal attack exists in the Ansible automation platform. This flaw allows an attacker to craft a malicious Ansible role and make the victim execute the role. A symlink can be used to overwrite a file outside of the extraction path.</p>
  <p><strong>CVSS:</strong> 6.3 · <strong>CWE:</strong> CWE-36</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-5115">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2023-5764 – A template injection flaw was found in Ansible where a user's controller interna...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-5764</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-5764</guid>
    <pubDate>Tue, 12 Dec 2023 22:15:22 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2023-5764</strong></p>
  <p>A template injection flaw was found in Ansible where a user's controller internal templating operations may remove the unsafe designation from template data. This issue could allow an attacker to use a specially crafted file to introduce templating injection when supplying templating data.</p>
  <p><strong>CVSS:</strong> 7.1 · <strong>CWE:</strong> CWE-1336</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-5764">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2023-5189 – A path traversal vulnerability exists in Ansible when extracting tarballs. An at...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-5189</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-5189</guid>
    <pubDate>Tue, 14 Nov 2023 23:15:12 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2023-5189</strong></p>
  <p>A path traversal vulnerability exists in Ansible when extracting tarballs. An attacker could craft a malicious tarball so that when using the galaxy importer of Ansible Automation Hub, a symlink could be dropped on the disk, resulting in files being overwritten.</p>
  <p><strong>CVSS:</strong> 6.3 · <strong>CWE:</strong> CWE-23</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-5189">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2023-4380 – A logic flaw exists in Ansible Automation platform. Whenever a private project i...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-4380</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-4380</guid>
    <pubDate>Wed, 04 Oct 2023 15:15:12 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2023-4380</strong></p>
  <p>A logic flaw exists in Ansible Automation platform. Whenever a private project is created with incorrect credentials, they are logged in plaintext. This flaw allows an attacker to retrieve the credentials from the log, resulting in the loss of confidentiality, integrity, and availability.</p>
  <p><strong>CVSS:</strong> 6.3 · <strong>CWE:</strong> CWE-532</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-4380">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2023-4237 – A flaw was found in the Ansible Automation Platform. When creating a new keypair...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-4237</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-4237</guid>
    <pubDate>Wed, 04 Oct 2023 15:15:12 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2023-4237</strong></p>
  <p>A flaw was found in the Ansible Automation Platform. When creating a new keypair, the ec2_key module prints out the private key directly to the standard output. This flaw allows an attacker to fetch those keys from the log files, compromising the system's confidentiality, integrity, and availability.</p>
  <p><strong>CVSS:</strong> 7.3 · <strong>CWE:</strong> CWE-497</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-4237">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2023-39059 – An issue in ansible semaphore v.2.8.90 allows a remote attacker to execute arbit...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-39059</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-39059</guid>
    <pubDate>Mon, 28 Aug 2023 22:15:08 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2023-39059</strong></p>
  <p>An issue in ansible semaphore v.2.8.90 allows a remote attacker to execute arbitrary code via a crafted payload to the extra variables parameter.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-94</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-39059">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2023-32983 – Jenkins Ansible Plugin 204.v8191fd551eb_f and earlier does not mask extra variab...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-32983</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-32983</guid>
    <pubDate>Tue, 16 May 2023 16:15:10 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2023-32983</strong></p>
  <p>Jenkins Ansible Plugin 204.v8191fd551eb_f and earlier does not mask extra variables displayed on the configuration form, increasing the potential for attackers to observe and capture them.</p>
  <p><strong>CVSS:</strong> 5.3 · <strong>CWE:</strong> CWE-312</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-32983">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2023-32982 – Jenkins Ansible Plugin 204.v8191fd551eb_f and earlier stores extra variables une...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-32982</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-32982</guid>
    <pubDate>Tue, 16 May 2023 16:15:10 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2023-32982</strong></p>
  <p>Jenkins Ansible Plugin 204.v8191fd551eb_f and earlier stores extra variables unencrypted in job config.xml files on the Jenkins controller where they can be viewed by users with Item/Extended Read permission or access to the Jenkins controller file system.</p>
  <p><strong>CVSS:</strong> 4.3 · <strong>CWE:</strong> CWE-311</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-32982">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2022-3146 – A flaw was found in tripleo-ansible. Due to an insecure default configuration, t...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2022-3146</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2022-3146</guid>
    <pubDate>Thu, 23 Mar 2023 21:15:19 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2022-3146</strong></p>
  <p>A flaw was found in tripleo-ansible. Due to an insecure default configuration, the permissions of a sensitive file are not sufficiently restricted. This flaw allows a local attacker to use brute force to explore the relevant directory and discover the file. This issue leads to information disclosure of important configuration details from the OpenStack deployment.</p>
  <p><strong>CVSS:</strong> 5.5 · <strong>CWE:</strong> CWE-22</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2022-3146">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2022-3101 – A flaw was found in tripleo-ansible. Due to an insecure default configuration, t...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2022-3101</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2022-3101</guid>
    <pubDate>Thu, 23 Mar 2023 21:15:18 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2022-3101</strong></p>
  <p>A flaw was found in tripleo-ansible. Due to an insecure default configuration, the permissions of a sensitive file are not sufficiently restricted. This flaw allows a local attacker to use brute force to explore the relevant directory and discover the file, leading to information disclosure of important configuration details from the OpenStack deployment.</p>
  <p><strong>CVSS:</strong> 5.5 · <strong>CWE:</strong> CWE-22</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2022-3101">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2023-28609 – api/auth.go in Ansible Semaphore before 2.8.89 mishandles authentication.</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-28609</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-28609</guid>
    <pubDate>Sat, 18 Mar 2023 21:15:11 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2023-28609</strong></p>
  <p>api/auth.go in Ansible Semaphore before 2.8.89 mishandles authentication.</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-287</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-28609">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Low] CVE-2014-125036 – A vulnerability, which was classified as problematic, has been found in drybjed ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2014-125036</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2014-125036</guid>
    <pubDate>Mon, 02 Jan 2023 19:15:10 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk low">Low</span> CVE-2014-125036</strong></p>
  <p>A vulnerability, which was classified as problematic, has been found in drybjed ansible-ntp. Affected by this issue is some unknown functionality of the file meta/main.yml. The manipulation leads to insufficient control of network message volume. The attack can only be done within the local network. The complexity of an attack is rather high. The exploitation is known to be difficult. The patch i…</p>
  <p><strong>CVSS:</strong> 2.6 · <strong>CWE:</strong> CWE-406</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2014-125036">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2022-3697 – A flaw was found in Ansible in the amazon.aws collection when using the tower_ca...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2022-3697</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2022-3697</guid>
    <pubDate>Fri, 28 Oct 2022 16:15:16 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2022-3697</strong></p>
  <p>A flaw was found in Ansible in the amazon.aws collection when using the tower_callback parameter from the amazon.aws.ec2_instance module. This flaw allows an attacker to take advantage of this issue as the module is handling the parameter insecurely, leading to the password leaking in the logs.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-233</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2022-3697">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2022-3644 – The collection remote for pulp_ansible stores tokens in plaintext instead of usi...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2022-3644</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2022-3644</guid>
    <pubDate>Tue, 25 Oct 2022 18:15:10 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2022-3644</strong></p>
  <p>The collection remote for pulp_ansible stores tokens in plaintext instead of using pulp's encrypted field and exposes them in read/write mode via the API () instead of marking it as write only.</p>
  <p><strong>CVSS:</strong> 5.5 · <strong>CWE:</strong> CWE-256</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2022-3644">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2022-3205 – Cross site scripting in automation controller UI in Red Hat Ansible Automation P...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2022-3205</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2022-3205</guid>
    <pubDate>Tue, 13 Sep 2022 20:15:09 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2022-3205</strong></p>
  <p>Cross site scripting in automation controller UI in Red Hat Ansible Automation Platform 1.2 and 2.0 where the project name is susceptible to XSS injection</p>
  <p><strong>CVSS:</strong> 4.6 · <strong>CWE:</strong> CWE-79</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2022-3205">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2021-4112 – A flaw was found in ansible-tower where the default installation is vulnerable t...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-4112</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-4112</guid>
    <pubDate>Thu, 25 Aug 2022 20:15:09 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2021-4112</strong></p>
  <p>A flaw was found in ansible-tower where the default installation is vulnerable to job isolation escape. This flaw allows an attacker to elevate the privilege from a low privileged user to an AWX user from outside the isolated environment.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-552</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-4112">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2021-4041 – A flaw was found in ansible-runner. An improper escaping of the shell command, w...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-4041</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-4041</guid>
    <pubDate>Wed, 24 Aug 2022 16:15:09 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2021-4041</strong></p>
  <p>A flaw was found in ansible-runner. An improper escaping of the shell command, while calling the ansible_runner.interface.run_command, can lead to parameters getting executed as host's shell command. A developer could unintentionally write code that gets executed in the host rather than the virtual environment.</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-20</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-4041">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2021-3702 – A race condition flaw was found in ansible-runner, where an attacker could watch...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-3702</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-3702</guid>
    <pubDate>Tue, 23 Aug 2022 16:15:09 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2021-3702</strong></p>
  <p>A race condition flaw was found in ansible-runner, where an attacker could watch for rapid creation and deletion of a temporary directory, substitute their directory at that name, and then have access to ansible-runner's private_data_dir the next time ansible-runner made use of the private_data_dir. The highest Threat out of this flaw is to integrity and confidentiality.</p>
  <p><strong>CVSS:</strong> 6.3 · <strong>CWE:</strong> CWE-362</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-3702">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2021-3701 – A flaw was found in ansible-runner where the default temporary files configurati...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-3701</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-3701</guid>
    <pubDate>Tue, 23 Aug 2022 16:15:09 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2021-3701</strong></p>
  <p>A flaw was found in ansible-runner where the default temporary files configuration in ansible-2.0.0 are written to world R/W locations. This flaw allows an attacker to pre-create the directory, resulting in reading private information or forcing ansible-runner to write files as the legitimate user in a place they did not expect. The highest threat from this vulnerability is to confidentiality and…</p>
  <p><strong>CVSS:</strong> 6.6 · <strong>CWE:</strong> CWE-276</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-3701">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2022-2568 – A privilege escalation flaw was found in the Ansible Automation Platform. This f...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2022-2568</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2022-2568</guid>
    <pubDate>Thu, 18 Aug 2022 20:15:11 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2022-2568</strong></p>
  <p>A privilege escalation flaw was found in the Ansible Automation Platform. This flaw allows a remote authenticated user with 'change user' permissions to modify the account settings of the superuser account and also remove the superuser privileges.</p>
  <p><strong>CVSS:</strong> 6.5 · <strong>CWE:</strong> CWE-269</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2022-2568">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2022-1662 – In convert2rhel, there's an ansible playbook named ansible/run-convert2rhel.yml ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2022-1662</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2022-1662</guid>
    <pubDate>Thu, 14 Jul 2022 15:15:07 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2022-1662</strong></p>
  <p>In convert2rhel, there's an ansible playbook named ansible/run-convert2rhel.yml which passes the Red Hat Subscription Manager user password via the CLI to convert2rhel. This could allow unauthorized local users to view the password via the process list while convert2rhel is running. However, this ansible playbook is only an example in the upstream repository and it is not shipped in officially su…</p>
  <p><strong>CVSS:</strong> 5.5 · <strong>CWE:</strong> CWE-200</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2022-1662">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2021-3681 – A flaw was found in Ansible Galaxy Collections. When collections are built manua...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-3681</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-3681</guid>
    <pubDate>Mon, 18 Apr 2022 17:15:15 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2021-3681</strong></p>
  <p>A flaw was found in Ansible Galaxy Collections. When collections are built manually, any files in the repository directory that are not explicitly excluded via the ``build_ignore`` list in "galaxy.yml" include files in the ``.tar.gz`` file. This contains sensitive info, such as the user's Ansible Galaxy API key and any secrets in ``ansible`` or ``ansible-playbook`` verbose output without the``no_…</p>
  <p><strong>CVSS:</strong> 5.5 · <strong>CWE:</strong> CWE-522</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-3681">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2021-3589 – An authorization flaw was found in Foreman Ansible. An authenticated attacker wi...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-3589</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-3589</guid>
    <pubDate>Wed, 23 Mar 2022 20:15:09 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2021-3589</strong></p>
  <p>An authorization flaw was found in Foreman Ansible. An authenticated attacker with certain permissions to create and run Ansible jobs can access hosts through job templates. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability.</p>
  <p><strong>CVSS:</strong> 8.0 · <strong>CWE:</strong> CWE-306</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-3589">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2021-20180 – A flaw was found in ansible module where credentials are disclosed in the consol...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-20180</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-20180</guid>
    <pubDate>Wed, 16 Mar 2022 15:15:09 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2021-20180</strong></p>
  <p>A flaw was found in ansible module where credentials are disclosed in the console log by default and not protected by the security feature when using the bitbucket_pipeline_variable module. This flaw allows an attacker to steal bitbucket_pipeline credentials. The highest threat from this vulnerability is to confidentiality.</p>
  <p><strong>CVSS:</strong> 5.5 · <strong>CWE:</strong> CWE-532</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-20180">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2021-3620 – A flaw was found in Ansible Engine's ansible-connection module, where sensitive ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-3620</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-3620</guid>
    <pubDate>Thu, 03 Mar 2022 19:15:08 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2021-3620</strong></p>
  <p>A flaw was found in Ansible Engine's ansible-connection module, where sensitive information such as the Ansible user credentials is disclosed by default in the traceback error message. The highest threat from this vulnerability is to confidentiality.</p>
  <p><strong>CVSS:</strong> 5.5 · <strong>CWE:</strong> CWE-209</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-3620">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2021-33924 – Confluent Ansible (cp-ansible) version 5.5.0, 5.5.1, 5.5.2 and 6.0.0 is vulnerab...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-33924</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-33924</guid>
    <pubDate>Wed, 29 Sep 2021 10:15:07 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2021-33924</strong></p>
  <p>Confluent Ansible (cp-ansible) version 5.5.0, 5.5.1, 5.5.2 and 6.0.0 is vulnerable to Incorrect Access Control via its auxiliary component that allows remote attackers to access sensitive information.</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-862</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-33924">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2021-33923 – Insecure permissions in Confluent Ansible (cp-ansible) 5.5.0, 5.5.1, 5.5.2 and 6...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-33923</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-33923</guid>
    <pubDate>Wed, 29 Sep 2021 10:15:07 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2021-33923</strong></p>
  <p>Insecure permissions in Confluent Ansible (cp-ansible) 5.5.0, 5.5.1, 5.5.2 and 6.0.0 allows local attackers to access some sensitive information (private keys, state database).</p>
  <p><strong>CVSS:</strong> 5.5 · <strong>CWE:</strong> CWE-276</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-33923">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2021-3583 – A flaw was found in Ansible, where a user's controller is vulnerable to template...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-3583</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-3583</guid>
    <pubDate>Wed, 22 Sep 2021 12:15:07 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2021-3583</strong></p>
  <p>A flaw was found in Ansible, where a user's controller is vulnerable to template injection. This issue can occur through facts used in the template if the user is trying to put templates in multi-line YAML strings and the facts being handled do not routinely include special template characters. This flaw allows attackers to perform command injection, which discloses sensitive information. The hig…</p>
  <p><strong>CVSS:</strong> 7.1 · <strong>CWE:</strong> CWE-20</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-3583">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2021-21382 – Restund is an open source NAT traversal server. The restund TURN server can be i...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-21382</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-21382</guid>
    <pubDate>Fri, 11 Jun 2021 21:15:09 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2021-21382</strong></p>
  <p>Restund is an open source NAT traversal server. The restund TURN server can be instructed to open a relay to the loopback address range. This allows you to reach any other service running on localhost which you might consider private. In the configuration that we ship (https://github.com/wireapp/ansible-restund/blob/master/templates/restund.conf.j2#L40-L43) the `status` interface of restund is en…</p>
  <p><strong>CVSS:</strong> 8.6 · <strong>CWE:</strong> CWE-668</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-21382">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2020-1716 – A flaw was found in the ceph-ansible playbook where it contained hardcoded passw...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-1716</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-1716</guid>
    <pubDate>Fri, 28 May 2021 13:15:07 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2020-1716</strong></p>
  <p>A flaw was found in the ceph-ansible playbook where it contained hardcoded passwords that were being used as default passwords while deploying Ceph services. Any authenticated attacker can abuse this flaw to brute-force Ceph deployments, and gain administrator access to Ceph clusters via the Ceph dashboard to initiate read, write, and delete Ceph clusters and also modify Ceph cluster configuratio…</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-798</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-1716">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Low] CVE-2020-14329 – A data exposure flaw was found in Ansible Tower in versions before 3.7.2, where ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-14329</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-14329</guid>
    <pubDate>Thu, 27 May 2021 20:15:07 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk low">Low</span> CVE-2020-14329</strong></p>
  <p>A data exposure flaw was found in Ansible Tower in versions before 3.7.2, where sensitive data can be exposed from the /api/v2/labels/ endpoint. This flaw allows users from other organizations in the system to retrieve any label from the organization and also disclose organization names. The highest threat from this vulnerability is to confidentiality.</p>
  <p><strong>CVSS:</strong> 3.3 · <strong>CWE:</strong> CWE-200</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-14329">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Low] CVE-2020-14328 – A flaw was found in Ansible Tower in versions before 3.7.2. A Server Side Reques...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-14328</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-14328</guid>
    <pubDate>Thu, 27 May 2021 20:15:07 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk low">Low</span> CVE-2020-14328</strong></p>
  <p>A flaw was found in Ansible Tower in versions before 3.7.2. A Server Side Request Forgery flaw can be abused by supplying a URL which could lead to the server processing it connecting to internal services or exposing additional internal services and more particularly retrieving full details in case of error. The highest threat from this vulnerability is to data confidentiality.</p>
  <p><strong>CVSS:</strong> 3.3 · <strong>CWE:</strong> CWE-918</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-14328">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2020-14327 – A Server-side request forgery (SSRF) flaw was found in Ansible Tower in versions...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-14327</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-14327</guid>
    <pubDate>Thu, 27 May 2021 20:15:07 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2020-14327</strong></p>
  <p>A Server-side request forgery (SSRF) flaw was found in Ansible Tower in versions before 3.6.5 and before 3.7.2. Functionality on the Tower server is abused by supplying a URL that could lead to the server processing it. This flaw leads to the connection to internal services or the exposure of additional internal services by abusing the test feature of lookup credentials to forge HTTP/HTTPS reques…</p>
  <p><strong>CVSS:</strong> 5.5 · <strong>CWE:</strong> CWE-918</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-14327">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2020-10729 – A flaw was found in the use of insufficiently random values in Ansible. Two rand...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-10729</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-10729</guid>
    <pubDate>Thu, 27 May 2021 19:15:07 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2020-10729</strong></p>
  <p>A flaw was found in the use of insufficiently random values in Ansible. Two random password lookups of the same length generate the equal value as the template caching action for the same file since no re-evaluation happens. The highest threat from this vulnerability would be that all passwords are exposed at once for the file. This flaw affects Ansible Engine versions before 2.9.6.</p>
  <p><strong>CVSS:</strong> 5.5 · <strong>CWE:</strong> CWE-330</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-10729">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2020-10716 – A flaw was found in Red Hat Satellite's Job Invocation, where the "User Input" e...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-10716</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-10716</guid>
    <pubDate>Thu, 27 May 2021 19:15:07 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2020-10716</strong></p>
  <p>A flaw was found in Red Hat Satellite's Job Invocation, where the "User Input" entry was not properly restricted to the view. This flaw allows a malicious Satellite user to scan through the Job Invocation, with the ability to search for passwords and other sensitive data. This flaw affects tfm-rubygem-foreman_ansible versions before 4.0.3.4.</p>
  <p><strong>CVSS:</strong> 6.5 · <strong>CWE:</strong> CWE-285</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-10716">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2020-10709 – A security flaw was found in Ansible Tower when requesting an OAuth2 token with ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-10709</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-10709</guid>
    <pubDate>Thu, 27 May 2021 19:15:07 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2020-10709</strong></p>
  <p>A security flaw was found in Ansible Tower when requesting an OAuth2 token with an OAuth2 application. Ansible Tower uses the token to provide authentication. This flaw allows an attacker to obtain a refresh token that does not expire. The original token granted to the user still has access to Ansible Tower, which allows any user that can gain access to the token to be fully authenticated to Ansi…</p>
  <p><strong>CVSS:</strong> 7.1 · <strong>CWE:</strong> CWE-287</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-10709">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Low] CVE-2020-10698 – A flaw was found in Ansible Tower when running jobs. This flaw allows an attacke...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-10698</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-10698</guid>
    <pubDate>Thu, 27 May 2021 19:15:07 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk low">Low</span> CVE-2020-10698</strong></p>
  <p>A flaw was found in Ansible Tower when running jobs. This flaw allows an attacker to access the stdout of the executed jobs which are run from other organizations. Some sensible data can be disclosed. However, critical data should not be disclosed, as it should be protected by the no_log flag when debugging is enabled. This flaw affects Ansible Tower versions before 3.6.4, Ansible Tower versions…</p>
  <p><strong>CVSS:</strong> 3.3 · <strong>CWE:</strong> CWE-200</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-10698">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2020-10697 – A flaw was found in Ansible Tower when running Openshift. Tower runs a memcached...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-10697</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-10697</guid>
    <pubDate>Thu, 27 May 2021 19:15:07 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2020-10697</strong></p>
  <p>A flaw was found in Ansible Tower when running Openshift. Tower runs a memcached, which is accessed via TCP. An attacker can take advantage of writing a playbook polluting this cache, causing a denial of service attack. This attack would not completely stop the service, but in the worst-case scenario, it can reduce the Tower performance, for which memcached is designed. Theoretically, more sophis…</p>
  <p><strong>CVSS:</strong> 4.4 · <strong>CWE:</strong> CWE-862</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-10697">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2021-20191 – A flaw was found in ansible. Credentials, such as secrets, are being disclosed i...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-20191</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-20191</guid>
    <pubDate>Wed, 26 May 2021 21:15:08 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2021-20191</strong></p>
  <p>A flaw was found in ansible. Credentials, such as secrets, are being disclosed in console log by default and not protected by no_log feature when using those modules. An attacker can take advantage of this information to steal those credentials. The highest threat from this vulnerability is to data confidentiality. Versions before ansible 2.9.18 are affected.</p>
  <p><strong>CVSS:</strong> 5.5 · <strong>CWE:</strong> CWE-532</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-20191">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2021-20178 – A flaw was found in ansible module where credentials are disclosed in the consol...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-20178</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-20178</guid>
    <pubDate>Wed, 26 May 2021 12:15:18 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2021-20178</strong></p>
  <p>A flaw was found in ansible module where credentials are disclosed in the console log by default and not protected by the security feature when using the bitbucket_pipeline_variable module. This flaw allows an attacker to steal bitbucket_pipeline credentials. The highest threat from this vulnerability is to confidentiality.</p>
  <p><strong>CVSS:</strong> 5.5 · <strong>CWE:</strong> CWE-532</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-20178">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2021-31918 – A flaw was found in tripleo-ansible version as shipped in Red Hat Openstack 16.1...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-31918</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-31918</guid>
    <pubDate>Thu, 06 May 2021 17:15:08 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2021-31918</strong></p>
  <p>A flaw was found in tripleo-ansible version as shipped in Red Hat Openstack 16.1. The Ansible log file is readable to all users during stack update and creation. The highest threat from this vulnerability is to data confidentiality.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-200</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-31918">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2021-20228 – A flaw was found in the Ansible Engine 2.9.18, where sensitive info is not maske...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-20228</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-20228</guid>
    <pubDate>Thu, 29 Apr 2021 16:15:09 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2021-20228</strong></p>
  <p>A flaw was found in the Ansible Engine 2.9.18, where sensitive info is not masked by default and is not protected by the no_log feature when using the sub-option feature of the basic.py module. This flaw allows an attacker to obtain sensitive information. The highest threat from this vulnerability is to confidentiality.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-200</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-20228">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2021-3447 – A flaw was found in several ansible modules, where parameters containing credent...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-3447</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-3447</guid>
    <pubDate>Thu, 01 Apr 2021 18:15:13 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2021-3447</strong></p>
  <p>A flaw was found in several ansible modules, where parameters containing credentials, such as secrets, were being logged in plain-text on managed nodes, as well as being made visible on the controller node when run in verbose mode. These parameters were not protected by the no_log feature. An attacker can take advantage of this information to steal those credentials, provided when they have acces…</p>
  <p><strong>CVSS:</strong> 5.5 · <strong>CWE:</strong> CWE-532</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-3447">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2019-19350 – An insecure modification vulnerability in the /etc/passwd file was found in the ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2019-19350</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2019-19350</guid>
    <pubDate>Wed, 24 Mar 2021 16:15:14 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2019-19350</strong></p>
  <p>An insecure modification vulnerability in the /etc/passwd file was found in the openshift/ansible-service-broker as shipped in Red Hat Openshift 4 and 3.11. An attacker with access to the container could use this flaw to modify /etc/passwd and escalate their privileges.</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-266</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2019-19350">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2021-20253 – A flaw was found in ansible-tower. The default installation is vulnerable to Job...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-20253</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-20253</guid>
    <pubDate>Tue, 09 Mar 2021 18:15:15 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2021-20253</strong></p>
  <p>A flaw was found in ansible-tower. The default installation is vulnerable to Job Isolation escape allowing an attacker to elevate the privilege from a low privileged user to the awx user from outside the isolated environment. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability.</p>
  <p><strong>CVSS:</strong> 6.7 · <strong>CWE:</strong> CWE-552</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-20253">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2020-26278 – Weave Net is open source software which creates a virtual network that connects ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-26278</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-26278</guid>
    <pubDate>Wed, 20 Jan 2021 22:15:11 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2020-26278</strong></p>
  <p>Weave Net is open source software which creates a virtual network that connects Docker containers across multiple hosts and enables their automatic discovery. Weave Net before version 2.8.0 has a vulnerability in which can allow an attacker to take over any host in the cluster. Weave Net is supplied with a manifest that runs pods on every node in a Kubernetes cluster, which are responsible for ma…</p>
  <p><strong>CVSS:</strong> 5.8 · <strong>CWE:</strong> CWE-250</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-26278">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2020-25677 – A flaw was found in Ceph-ansible v4.0.41 where it creates an /etc/ceph/iscsi-gat...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-25677</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-25677</guid>
    <pubDate>Tue, 08 Dec 2020 01:15:12 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2020-25677</strong></p>
  <p>A flaw was found in Ceph-ansible v4.0.41 where it creates an /etc/ceph/iscsi-gateway.conf with insecure default permissions. This flaw allows any user on the system to read sensitive information within this file. The highest threat from this vulnerability is to confidentiality.</p>
  <p><strong>CVSS:</strong> 5.5 · <strong>CWE:</strong> CWE-312</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-25677">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2020-14369 – This release fixes a Cross Site Request Forgery vulnerability was found in Red H...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-14369</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-14369</guid>
    <pubDate>Wed, 02 Dec 2020 15:15:12 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2020-14369</strong></p>
  <p>This release fixes a Cross Site Request Forgery vulnerability was found in Red Hat CloudForms which forces end users to execute unwanted actions on a web application in which the user is currently authenticated. An attacker can make a forgery HTTP request to the server by crafting custom flash file which can force the user to perform state changing requests like provisioning VMs, running ansible…</p>
  <p><strong>CVSS:</strong> 6.3 · <strong>CWE:</strong> CWE-352</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-14369">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2020-2310 – Missing permission checks in Jenkins Ansible Plugin 1.0 and earlier allow attack...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-2310</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-2310</guid>
    <pubDate>Wed, 04 Nov 2020 15:15:11 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2020-2310</strong></p>
  <p>Missing permission checks in Jenkins Ansible Plugin 1.0 and earlier allow attackers with Overall/Read permission to enumerate credentials IDs of credentials stored in Jenkins.</p>
  <p><strong>CVSS:</strong> 4.3 · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-2310">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2020-25646 – A flaw was found in Ansible Collection community.crypto. openssl_privatekey_info...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-25646</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-25646</guid>
    <pubDate>Thu, 29 Oct 2020 20:15:19 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2020-25646</strong></p>
  <p>A flaw was found in Ansible Collection community.crypto. openssl_privatekey_info exposes private key in logs. This directly impacts confidentiality</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-117</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-25646">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2020-25635 – A flaw was found in Ansible Base when using the aws_ssm connection plugin as gar...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-25635</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-25635</guid>
    <pubDate>Mon, 05 Oct 2020 14:15:13 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2020-25635</strong></p>
  <p>A flaw was found in Ansible Base when using the aws_ssm connection plugin as garbage collector is not happening after playbook run is completed. Files would remain in the bucket exposing the data. This issue affects directly data confidentiality.</p>
  <p><strong>CVSS:</strong> 5.0 · <strong>CWE:</strong> CWE-212</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-25635">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2020-25636 – A flaw was found in Ansible Base when using the aws_ssm connection plugin as the...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-25636</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-25636</guid>
    <pubDate>Mon, 05 Oct 2020 13:15:13 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2020-25636</strong></p>
  <p>A flaw was found in Ansible Base when using the aws_ssm connection plugin as there is no namespace separation for file transfers. Files are written directly to the root bucket, making possible to have collisions when running multiple ansible processes. This issue affects mainly the service availability.</p>
  <p><strong>CVSS:</strong> 6.6 · <strong>CWE:</strong> CWE-377</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-25636">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2020-14365 – A flaw was found in the Ansible Engine, in ansible-engine 2.8.x before 2.8.15 an...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-14365</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-14365</guid>
    <pubDate>Wed, 23 Sep 2020 13:15:15 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2020-14365</strong></p>
  <p>A flaw was found in the Ansible Engine, in ansible-engine 2.8.x before 2.8.15 and ansible-engine 2.9.x before 2.9.13, when installing packages using the dnf module. GPG signatures are ignored during installation even when disable_gpg_check is set to False, which is the default behavior. This flaw leads to malicious packages being installed on the system and arbitrary code executed via package ins…</p>
  <p><strong>CVSS:</strong> 7.1 · <strong>CWE:</strong> CWE-347</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-14365">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2020-14332 – A flaw was found in the Ansible Engine when using module_args. Tasks executed wi...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-14332</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-14332</guid>
    <pubDate>Fri, 11 Sep 2020 18:15:13 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2020-14332</strong></p>
  <p>A flaw was found in the Ansible Engine when using module_args. Tasks executed with check mode (--check-mode) do not properly neutralize sensitive data exposed in the event data. This flaw allows unauthorized users to read this data. The highest threat from this vulnerability is to confidentiality.</p>
  <p><strong>CVSS:</strong> 5.5 · <strong>CWE:</strong> CWE-117</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-14332">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2020-14330 – An Improper Output Neutralization for Logs flaw was found in Ansible when using ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-14330</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-14330</guid>
    <pubDate>Fri, 11 Sep 2020 18:15:13 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2020-14330</strong></p>
  <p>An Improper Output Neutralization for Logs flaw was found in Ansible when using the uri module, where sensitive data is exposed to content and json output. This flaw allows an attacker to access the logs or outputs of performed tasks to read keys used in playbooks from other users within the uri module. The highest threat from this vulnerability is to data confidentiality.</p>
  <p><strong>CVSS:</strong> 5.0 · <strong>CWE:</strong> CWE-532</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-14330">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2019-14904 – A flaw was found in the solaris_zone module from the Ansible Community modules. ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2019-14904</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2019-14904</guid>
    <pubDate>Wed, 26 Aug 2020 03:15:11 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2019-14904</strong></p>
  <p>A flaw was found in the solaris_zone module from the Ansible Community modules. When setting the name for the zone on the Solaris host, the zone name is checked by listing the process with the 'ps' bare command on the remote machine. An attacker could take advantage of this flaw by crafting the name of the zone and executing arbitrary commands in the remote host. Ansible Engine 2.7.15, 2.8.7, and…</p>
  <p><strong>CVSS:</strong> 7.3 · <strong>CWE:</strong> CWE-20</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2019-14904">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2020-14296 – Red Hat CloudForms 4.7 and 5 was vulnerable to Server-Side Request Forgery (SSRF...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-14296</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-14296</guid>
    <pubDate>Tue, 11 Aug 2020 14:15:11 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2020-14296</strong></p>
  <p>Red Hat CloudForms 4.7 and 5 was vulnerable to Server-Side Request Forgery (SSRF) flaw. With the access to add Ansible Tower provider, an attacker could scan and attack systems from the internal network which are not normally accessible.</p>
  <p><strong>CVSS:</strong> 7.1 · <strong>CWE:</strong> CWE-918</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-14296">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2020-10782 – An exposure of sensitive information flaw was found in Ansible version 3.7.0. Se...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-10782</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-10782</guid>
    <pubDate>Thu, 18 Jun 2020 13:15:10 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2020-10782</strong></p>
  <p>An exposure of sensitive information flaw was found in Ansible version 3.7.0. Sensitive information, such tokens and other secrets could be readable and exposed from the rsyslog configuration file, which has set the wrong world-readable permissions. The highest threat from this vulnerability is to confidentiality. This is fixed in Ansible version 3.7.1.</p>
  <p><strong>CVSS:</strong> 6.5 · <strong>CWE:</strong> CWE-200</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-10782">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2020-10744 – An incomplete fix was found for the fix of the flaw CVE-2020-1733 ansible: insec...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-10744</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-10744</guid>
    <pubDate>Fri, 15 May 2020 14:15:11 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2020-10744</strong></p>
  <p>An incomplete fix was found for the fix of the flaw CVE-2020-1733 ansible: insecure temporary directory when running become_user from become directive. The provided fix is insufficient to prevent the race condition on systems using ACLs and FUSE filesystems. Ansible Engine 2.7.18, 2.8.12, and 2.9.9 as well as previous versions are affected and Ansible Tower 3.4.5, 3.5.6 and 3.6.4 as well as previ…</p>
  <p><strong>CVSS:</strong> 5.0 · <strong>CWE:</strong> CWE-377</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-10744">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2020-1746 – A flaw was found in the Ansible Engine affecting Ansible Engine versions 2.7.x b...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-1746</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-1746</guid>
    <pubDate>Tue, 12 May 2020 18:15:13 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2020-1746</strong></p>
  <p>A flaw was found in the Ansible Engine affecting Ansible Engine versions 2.7.x before 2.7.17 and 2.8.x before 2.8.11 and 2.9.x before 2.9.7 as well as Ansible Tower before and including versions 3.4.5 and 3.5.5 and 3.6.3 when the ldap_attr and ldap_entry community modules are used. The issue discloses the LDAP bind password to stdout or a log file if a playbook task is written using the bind_pw i…</p>
  <p><strong>CVSS:</strong> 5.0 · <strong>CWE:</strong> CWE-200</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-1746">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2020-10685 – A flaw was found in Ansible Engine affecting Ansible Engine versions 2.7.x befor...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-10685</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-10685</guid>
    <pubDate>Mon, 11 May 2020 14:15:11 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2020-10685</strong></p>
  <p>A flaw was found in Ansible Engine affecting Ansible Engine versions 2.7.x before 2.7.17 and 2.8.x before 2.8.11 and 2.9.x before 2.9.7 as well as Ansible Tower before and including versions 3.4.5 and 3.5.5 and 3.6.3 when using modules which decrypts vault files such as assemble, script, unarchive, win_copy, aws_s3 or copy modules. The temporary directory is created in /tmp leaves the s ts unencr…</p>
  <p><strong>CVSS:</strong> 5.0 · <strong>CWE:</strong> CWE-459</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-10685">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2020-10691 – An archive traversal flaw was found in all ansible-engine versions 2.9.x prior t...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-10691</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-10691</guid>
    <pubDate>Thu, 30 Apr 2020 17:15:11 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2020-10691</strong></p>
  <p>An archive traversal flaw was found in all ansible-engine versions 2.9.x prior to 2.9.7, when running ansible-galaxy collection install. When extracting a collection .tar.gz file, the directory is created without sanitizing the filename. An attacker could take advantage to overwrite any file within the system.</p>
  <p><strong>CVSS:</strong> 5.2 · <strong>CWE:</strong> CWE-22</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-10691">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2020-1741 – A flaw was found in openshift-ansible. OpenShift Container Platform (OCP) 3.11 i...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-1741</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-1741</guid>
    <pubDate>Fri, 24 Apr 2020 19:15:12 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2020-1741</strong></p>
  <p>A flaw was found in openshift-ansible. OpenShift Container Platform (OCP) 3.11 is too permissive in the way it specified CORS allowed origins during installation. An attacker, able to man-in-the-middle the connection between the user's browser and the openshift console, could use this flaw to perform a phishing attack. The main threat from this vulnerability is data confidentiality.</p>
  <p><strong>CVSS:</strong> 5.9 · <strong>CWE:</strong> CWE-185</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-1741">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2018-17954 – An Improper Privilege Management in crowbar of SUSE OpenStack Cloud 7, SUSE Open...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2018-17954</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2018-17954</guid>
    <pubDate>Fri, 03 Apr 2020 07:15:11 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2018-17954</strong></p>
  <p>An Improper Privilege Management in crowbar of SUSE OpenStack Cloud 7, SUSE OpenStack Cloud 8, SUSE OpenStack Cloud 9, SUSE OpenStack Cloud Crowbar 8, SUSE OpenStack Cloud Crowbar 9 allows root users on any crowbar managed node to cause become root on any other node. This issue affects: SUSE OpenStack Cloud 7 crowbar-core versions prior to 4.0+git.1578392992.fabfd186c-9.63.1, crowbar-. SUSE OpenS…</p>
  <p><strong>CVSS:</strong> 9.3 · <strong>CWE:</strong> CWE-269</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2018-17954">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2019-14905 – A vulnerability was found in Ansible Engine versions 2.9.x before 2.9.3, 2.8.x b...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2019-14905</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2019-14905</guid>
    <pubDate>Tue, 31 Mar 2020 17:15:26 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2019-14905</strong></p>
  <p>A vulnerability was found in Ansible Engine versions 2.9.x before 2.9.3, 2.8.x before 2.8.8, 2.7.x before 2.7.16 and earlier, where in Ansible's nxos_file_copy module can be used to copy files to a flash or bootflash on NXOS devices. Malicious code could craft the filename parameter to perform OS command injections. This could result in a loss of confidentiality of the system among other issues.</p>
  <p><strong>CVSS:</strong> 5.6 · <strong>CWE:</strong> CWE-20</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2019-14905">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2020-10684 – A flaw was found in Ansible Engine, all versions 2.7.x, 2.8.x and 2.9.x prior to...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-10684</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-10684</guid>
    <pubDate>Tue, 24 Mar 2020 14:15:12 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2020-10684</strong></p>
  <p>A flaw was found in Ansible Engine, all versions 2.7.x, 2.8.x and 2.9.x prior to 2.7.17, 2.8.9 and 2.9.6 respectively, when using ansible_facts as a subkey of itself and promoting it to a variable when inject is enabled, overwriting the ansible_facts after the clean. An attacker could take advantage of this by altering the ansible_facts, such as ansible_hosts, users and any other key data which w…</p>
  <p><strong>CVSS:</strong> 7.9 · <strong>CWE:</strong> CWE-94</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-10684">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2019-19355 – An insecure modification vulnerability in the /etc/passwd file was found in the ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2019-19355</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2019-19355</guid>
    <pubDate>Wed, 18 Mar 2020 17:15:11 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2019-19355</strong></p>
  <p>An insecure modification vulnerability in the /etc/passwd file was found in the openshift/ocp-release-operator-sdk. An attacker with access to the container could use this flaw to modify /etc/passwd and escalate their privileges. This CVE is specific to the openshift/ansible-operator-container as shipped in Openshift 4.</p>
  <p><strong>CVSS:</strong> 7.0 · <strong>CWE:</strong> CWE-266</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2019-19355">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Low] CVE-2020-1740 – A flaw was found in Ansible Engine when using Ansible Vault for editing encrypte...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-1740</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-1740</guid>
    <pubDate>Mon, 16 Mar 2020 16:15:14 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk low">Low</span> CVE-2020-1740</strong></p>
  <p>A flaw was found in Ansible Engine when using Ansible Vault for editing encrypted files. When a user executes "ansible-vault edit", another user on the same computer can read the old and new secret, as it is created in a temporary file with mkstemp and the returned file descriptor is closed and the method write_data is called to write the existing secret in the file. This method will delete the f…</p>
  <p><strong>CVSS:</strong> 3.9 · <strong>CWE:</strong> CWE-377</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-1740">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Low] CVE-2020-1738 – A flaw was found in Ansible Engine when the module package or service is used an...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-1738</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-1738</guid>
    <pubDate>Mon, 16 Mar 2020 16:15:14 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk low">Low</span> CVE-2020-1738</strong></p>
  <p>A flaw was found in Ansible Engine when the module package or service is used and the parameter 'use' is not specified. If a previous task is executed with a malicious user, the module sent can be selected by the attacker using the ansible facts file. All versions in 2.7.x, 2.8.x and 2.9.x branches are believed to be vulnerable.</p>
  <p><strong>CVSS:</strong> 3.9 · <strong>CWE:</strong> CWE-88</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-1738">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Low] CVE-2020-1736 – A flaw was found in Ansible Engine when a file is moved using atomic_move primit...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-1736</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-1736</guid>
    <pubDate>Mon, 16 Mar 2020 16:15:13 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk low">Low</span> CVE-2020-1736</strong></p>
  <p>A flaw was found in Ansible Engine when a file is moved using atomic_move primitive as the file mode cannot be specified. This sets the destination files world-readable if the destination file does not exist and if the file exists, the file could be changed to have less restrictive permissions before the move. This could lead to the disclosure of sensitive data. All versions in 2.7.x, 2.8.x and 2…</p>
  <p><strong>CVSS:</strong> 2.2 · <strong>CWE:</strong> CWE-732</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-1736">View on NVD</a></p>
]]>
    </description>
  </item>
</channel>
</rss>
