DependencyCheck for Maven 9.0.0 to 9.0.6, for CLI version 9.0.0 to 9.0.5, and for Ant versions 9.0.0 to 9.0.5, when used in debug mode, allows an attacker to recover the NVD API Key from a log file.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: VulnCheck

Published: 2024-01-19T21:12:13.288Z

Updated: 2024-08-01T23:06:25.281Z

Reserved: 2024-01-19T17:35:09.985Z

Link: CVE-2024-23686

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2024-01-19T22:15:08.437

Modified: 2024-01-26T18:21:02.877

Link: CVE-2024-23686

cve-icon Redhat

No data.