Filtered by vendor Puppet Subscriptions
Filtered by product Puppet Subscriptions
Total 43 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2021-27021 1 Puppet 3 Puppet, Puppet Enterprise, Puppetdb 2024-08-03 8.8 High
A flaw was discovered in Puppet DB, this flaw results in an escalation of privileges which allows the user to delete tables via an SQL query.
CVE-2021-27022 1 Puppet 2 Puppet, Puppet Enterprise 2024-08-03 4.9 Medium
A flaw was discovered in bolt-server and ace where running a task with sensitive parameters results in those sensitive parameters being logged when they should not be. This issue only affects SSH/WinRM nodes (inventory service nodes).
CVE-2021-27026 1 Puppet 3 Puppet, Puppet Connect, Puppet Enterprise 2024-08-03 4.4 Medium
A flaw was divered in Puppet Enterprise and other Puppet products where sensitive plan parameters may be logged