Medium severity4.9NVD Advisory· Published Sep 7, 2021· Updated Jun 17, 2026
CVE-2021-27022
CVE-2021-27022
Description
A flaw was discovered in bolt-server and ace where running a task with sensitive parameters results in those sensitive parameters being logged when they should not be. This issue only affects SSH/WinRM nodes (inventory service nodes).
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
4- cpe:2.3:a:puppet:puppet_enterprise:*:*:*:*:*:*:*:*Range: <2019.8.8
- bolt-server/bolt-serverdescription
Patches
Vulnerability mechanics
References
2- puppet.com/security/cve/cve-2021-27022/nvdVendor Advisory
- puppet.com/security/cve/cve-2021-27022/%5Dnvd
News mentions
0No linked articles in our index yet.