Description
YugabyteDB diagnostic information was transmitted over HTTP, which could expose sensitive data during transmission
Problem types
CWE-319 Cleartext Transmission of Sensitive Information
Product status
2024.1.0 before 2024.1.3
2.20.0.0 before 2.20.7.0
2.23.0.0 before 2.23.1.0
References
docs.yugabyte.com/...secure/vulnerability-disclosure-policy/