VYPR
Unrated severityNVD Advisory· Published Aug 8, 2024· Updated Aug 9, 2024

Elastic Agent Insertion of Sensitive Information into Log File

CVE-2024-37283

Description

An issue was discovered whereby Elastic Agent will leak secrets from the agent policy elastic-agent.yml only when the log level is configured to debug. By default the log level is set to info, where no leak occurs.

Affected products

1

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

1

News mentions

0

No linked articles in our index yet.