Description
A flaw was found in, all under 2.0.20, in the Undertow DEBUG log for io.undertow.request.security. If enabled, an attacker could abuse this flaw to obtain the user's credentials from the log files.
Remediation
References
Related Vulnerabilities
WordPress Plugin ActiveCampaign-Forms, Site Tracking, Live Chat Unspecified Vulnerability (5.7)
Oracle JRE CVE-2024-20955 Vulnerability (CVE-2024-20955)
markdown-it Inefficient Regular Expression Complexity Vulnerability (CVE-2015-10005)
WordPress Plugin Integration of Moneybird for WooCommerce Cross-Site Scripting (2.1.1)