CVE-2022-26311

Couchbase Operator 2.2.x before 2.2.3 exposes Sensitive Information to an Unauthorized Actor. Secrets are not redacted in logs collected from Kubernetes environments.
References
Configurations

Configuration 1 (hide)

cpe:2.3:a:couchbase:cloud_native_operator:*:*:*:*:*:*:*:*

History

18 Mar 2022, 01:55

Type Values Removed Values Added
References (MISC) https://docs.couchbase.com/operator/current/overview.html - (MISC) https://docs.couchbase.com/operator/current/overview.html - Product, Vendor Advisory
References (CONFIRM) https://www.couchbase.com/alerts - (CONFIRM) https://www.couchbase.com/alerts - Vendor Advisory
CVSS v2 : unknown
v3 : unknown
v2 : 5.0
v3 : 7.5
CPE cpe:2.3:a:couchbase:cloud_native_operator:*:*:*:*:*:*:*:*
CWE NVD-CWE-noinfo

10 Mar 2022, 17:53

Type Values Removed Values Added
New CVE

Information

Published : 2022-03-10 17:47

Updated : 2024-02-04 22:29


NVD link : CVE-2022-26311

Mitre link : CVE-2022-26311

CVE.ORG link : CVE-2022-26311


JSON object : View

Products Affected

couchbase

  • cloud_native_operator