VYPR
Vendor

Community.general

Products
8
CVEs
5
Across products
6
Status
Private

Products

8

Recent CVEs

5
  • CVE-2026-87874HigSep 9, 2026
    risk 0.53cvss 8.1epss 0.01

    A flaw was found in the memcached cache plugin of the community.general Ansible collection. Although its documentation states that records are stored in JSON format, the plugin performs no explicit serialization and relies on python-memcached, which pickles values on write and…

  • CVE-2026-87872MedSep 9, 2026
    risk 0.44cvss 6.8epss 0.00

    A flaw was found in the OCAPI modules (ocapi_command, ocapi_info) of the community.general Ansible collection. The shared OCAPI request helper disables TLS certificate validation on every request and the modules expose no parameter to re-enable it, while sending HTTP Basic-Auth…

  • CVE-2026-11820MedJun 23, 2026
    risk 0.42cvss 6.5epss 0.00

    A flaw was found in the community.general Ansible collection's nexmo module. The module constructs HTTP requests to the Vonage/Nexmo SMS API by encoding API credentials (api_key and api_secret) into URL query parameters and sending them via GET requests. This causes credentials…

  • CVE-2026-16566modJul 22, 2026
    risk 0.40cvss 6.1epss —

    community.general: community.general: jenkins_credential module returns generated API token in plaintext output

  • CVE-2026-80158MedAug 26, 2026
    risk 0.36cvss 5.5epss 0.00

    A flaw was found in the ipa_getkeytab module of the community.general Ansible collection. The module's bind_pw parameter, used to supply the LDAP simple-bind password when retrieving a Kerberos keytab, is not declared with no_log, unlike the sibling password parameter in the…