Description
A template injection flaw was found in Ansible where a user's controller internal templating operations may remove the unsafe designation from template data. This issue could allow an attacker to use a specially crafted file to introduce templating injection when supplying templating data.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-3147 | A template injection flaw was found in Ansible where a user's controller internal templating operations may remove the unsafe designation from template data. This issue could allow an attacker to use a specially crafted file to introduce templating injection when supplying templating data. |
Github GHSA |
GHSA-7j69-qfc3-2fq9 | Ansible template injection vulnerability |
Ubuntu USN |
USN-6846-1 | Ansible vulnerabilities |
References
History
Fri, 22 Nov 2024 12:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
Fri, 25 Oct 2024 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
|
| Metrics |
ssvc
|
Subscriptions
Fedoraproject
Subscribe
Extra Packages For Enterprise Linux
Subscribe
Fedora
Subscribe
Redhat
Subscribe
Ansible
Subscribe
Ansible Automation Platform
Subscribe
Ansible Automation Platform Developer
Subscribe
Ansible Automation Platform Inside
Subscribe
Ansible Developer
Subscribe
Ansible Inside
Subscribe
Enterprise Linux
Subscribe
Status: PUBLISHED
Assigner: redhat
Published:
Updated: 2025-11-20T18:07:16.802Z
Reserved: 2023-10-25T10:27:46.601Z
Link: CVE-2023-5764
Updated: 2024-10-25T13:07:31.611Z
Status : Modified
Published: 2023-12-12T22:15:22.747
Modified: 2024-11-21T08:42:26.410
Link: CVE-2023-5764
OpenCVE Enrichment
No data.
Weaknesses
EUVD
Github GHSA
Ubuntu USN