Sensitive information written to a log file vulnerability was found in jaegertracing/jaeger before version 1.18.1 when the Kafka data store is used. This flaw allows an attacker with access to the container's log file to discover the Kafka credentials.
{
"severity": "MODERATE",
"github_reviewed": true,
"cwe_ids": [
"CWE-200",
"CWE-532"
],
"nvd_published_at": null,
"github_reviewed_at": "2021-05-12T14:55:16Z"
}