CVE-2020-8565 (Medium) detected in github.com/docker/Cli-v20.10.7+incompatible #111
Labels
Mend: dependency security vulnerability
Security vulnerability detected by WhiteSource
no-issue-activity
CVE-2020-8565 - Medium Severity Vulnerability
The Docker CLI
Library home page: https://proxy.golang.org/github.com/docker/!cli/@v/v20.10.7+incompatible.zip
Path to dependency file: /go.mod
Path to vulnerable library: /go.mod
Dependency Hierarchy:
Found in HEAD commit: df1f7d3f67826e841793324e4796be4fbd91c00f
Found in base branch: main
In Kubernetes, if the logging level is set to at least 9, authorization and bearer tokens will be written to log files. This can occur both in API server logs and client tool output like kubectl. This affects <= v1.19.3, <= v1.18.10, <= v1.17.13, < v1.20.0-alpha2.
Publish Date: 2020-12-07
URL: CVE-2020-8565
Base Score Metrics:
Type: Upgrade version
Origin: https://osv.dev/vulnerability/GO-2020-0064
Release Date: 2020-12-07
Fix Resolution: v1.20.0-alpha.2
Step up your Open Source Security Game with Mend here
The text was updated successfully, but these errors were encountered: