Information Exposure Through Log Files vulnerability discovered in Foundry Code-Workbooks where the endpoint backing that console was generating service log records of any Python code being run. These service logs included the Foundry token that represents the Code-Workbooks Python console. Upgrade to Code-Workbooks version 4.461.0. This issue affects Palantir Foundry Code-Workbooks version 4.144 to version 4.460.0 and is resolved in 4.461.0.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: Palantir

Published: 2022-11-14T20:55:11.191931Z

Updated: 2024-09-17T04:09:02.474Z

Reserved: 2022-03-25T00:00:00

Link: CVE-2022-27896

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2022-11-14T21:15:10.930

Modified: 2022-11-17T22:09:21.247

Link: CVE-2022-27896

cve-icon Redhat

No data.