First published: Thu Jun 01 2023(Updated: )
In JetBrains Ktor before 2.3.1 headers containing authentication data could be added to the exception's message
Credit: security@jetbrains.com
Affected Software | Affected Version | How to fix |
---|---|---|
JetBrains Ktor | <2.3.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2023-34339.
The severity of CVE-2023-34339 is low.
The affected software is JetBrains Ktor before version 2.3.1.
The vulnerability in JetBrains Ktor before 2.3.1 allows adding headers containing authentication data to the exception's message.
To fix CVE-2023-34339, update JetBrains Ktor to version 2.3.1 or later.