Medium severity5.5NVD Advisory· Published Sep 18, 2020· Updated Jun 17, 2026
CVE-2020-7945
CVE-2020-7945
Description
Local registry credentials were included directly in the CD4PE deployment definition, which could expose these credentials to users who should not have access to them. This is resolved in Continuous Delivery for Puppet Enterprise 4.0.1.
Affected products
3<4.0.1+ 1 more
- (no CPE)range: <4.0.1
- (no CPE)range: >=4.0.1
- cpe:2.3:a:puppet:continuous_delivery:4.0.0:*:*:*:puppet_enterprise:*:*:*
Patches
Vulnerability mechanics
References
1- puppet.com/security/cve/CVE-2020-7945nvdVendor Advisory
News mentions
0No linked articles in our index yet.