Medium severity6.5NVD Advisory· Published Mar 15, 2021· Updated Jun 17, 2026
CVE-2021-3167
CVE-2021-3167
Description
In Cloudera Data Engineering (CDE) 1.3.0, JWT authentication tokens are exposed to administrators in virtual cluster server logs.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3cpe:2.3:a:cloudera:data_engineering:1.3.0:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:cloudera:data_engineering:1.3.0:*:*:*:*:*:*:*
- (no CPE)range: = 1.3.0
- Cloudera/Data Engineering (CDE)description
Patches
Vulnerability mechanics
References
3- docs.cloudera.com/data-engineering/cloud/release-notes/topics/cde-general-known-issues.htmlnvdVendor Advisory
- docs.cloudera.com/documentation/other/security-bulletins/topics/Security-Bulletin.htmlnvdVendor Advisory
- my.cloudera.com/knowledge/TSB-2021-466-CDE-authentication-tokens-exposed-in-pod-andnvdVendor Advisory
News mentions
0No linked articles in our index yet.