Aimeos HTML client may potentially reveal sensitive information in error log
High severity
GitHub Reviewed
Published
Jun 25, 2024
in
aimeos/ai-client-html
•
Updated Jun 25, 2024
Package
Affected versions
>= 2024.04.1, < 2024.04.7
>= 2023.04.1, < 2023.10.15
>= 2022.04.1, < 2022.10.13
>= 2021.10.1, < 2021.10.22
Patched versions
2024.04.7
2023.10.15
2022.10.13
2021.10.22
Description
Published to the GitHub Advisory Database
Jun 25, 2024
Reviewed
Jun 25, 2024
Published by the National Vulnerability Database
Jun 25, 2024
Last updated
Jun 25, 2024
Impact
Debug information can reveal sensitive information from environment variables in error log
Affected platform
Laravel environments with multi-vendor setups and admin access for the vendors
References