3.1.2
7 years ago
6 months ago
Known vulnerabilities in the org.springframework.vault:spring-vault-core package. This does not include vulnerabilities belonging to this package’s dependencies.
Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.
Fix for freeVulnerability | Vulnerable Version |
---|---|
Affected versions of this package are vulnerable to Insertion of Sensitive Information into Log File when attempting to revoke a Vault batch token. Specifically, an application is vulnerable when all of the following are true:
An application is not vulnerable if any of the following is true:
How to fix Insertion of Sensitive Information into Log File? Upgrade | [,2.3.3)[3.0.0,3.0.2) |