DependencyCheck for Maven 9.0.0 to 9.0.6, for CLI version 9.0.0 to 9.0.5, and for Ant versions 9.0.0 to 9.0.5, when used in debug mode, allows an attacker to recover the NVD API Key from a log file.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: VulnCheck
Published: 2024-01-19T21:12:13.288Z
Updated: 2024-08-01T23:06:25.281Z
Reserved: 2024-01-19T17:35:09.985Z
Link: CVE-2024-23686
Vulnrichment
No data.
NVD
Status : Modified
Published: 2024-01-19T22:15:08.437
Modified: 2024-11-21T08:58:10.460
Link: CVE-2024-23686
Redhat
No data.