Unrated severityNVD Advisory· Published Aug 8, 2024· Updated Aug 9, 2024
Elastic Agent Insertion of Sensitive Information into Log File
CVE-2024-37283
Description
An issue was discovered whereby Elastic Agent will leak secrets from the agent policy elastic-agent.yml only when the log level is configured to debug. By default the log level is set to info, where no leak occurs.
Affected products
1- Range: 8.6.0
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
1News mentions
0No linked articles in our index yet.