A flaw was discovered in the way Ansible templating was implemented in versions before 2.6.18, 2.7.12 and 2.8.2, causing the possibility of information disclosure through unexpected variable substitution. By taking advantage of unintended variable substitution the content of any variable may be disclosed.
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: redhat

Published: 2019-07-30T22:12:30

Updated: 2021-08-07T14:06:39

Reserved: 2019-03-27T00:00:00


Link: CVE-2019-10156

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2019-07-30T23:15:12.043

Modified: 2022-04-19T15:36:33.477


Link: CVE-2019-10156

JSON object: View

cve-icon Redhat Information

No data.

CWE