When using tasks to read config files, there is a risk of database password disclosure. We recommend you upgrade to version 2.0.6 or higher.
References
Link | Resource |
---|---|
https://lists.apache.org/thread/z7084r9cs2r26cszkkgjqpb5bhnxqssp | Mailing List Vendor Advisory |
Configurations
Information
Published : 2022-11-24 08:15
Updated : 2022-11-30 12:35
NVD link : CVE-2022-26885
Mitre link : CVE-2022-26885
JSON object : View
CWE
CWE-522
Insufficiently Protected Credentials
Products Affected
apache
- dolphinscheduler