First published: Thu Dec 14 2023(Updated: )
In affected versions of Octopus Server it is possible for the OpenID client secret to be logged in clear text during the configuration of Octopus Server.
Credit: security@octopus.com
Affected Software | Affected Version | How to fix |
---|---|---|
Octopus Octopus Server | >=2022.1.2121<2023.1.11942 | |
Octopus Octopus Server | >=2023.2.2028<2023.2.13151 | |
Octopus Octopus Server | >=2023.3.317<2023.3.5049 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.