In Kubernetes clusters using VSphere as a cloud provider, with a logging level set to 4 or above, VSphere cloud credentials will be leaked in the cloud controller manager's log. This affects < v1.19.3.
{
"nvd_published_at": null,
"severity": "MODERATE",
"github_reviewed_at": "2024-04-24T20:02:20Z",
"github_reviewed": true,
"cwe_ids": [
"CWE-532"
]
}