CVE-2023-34339: Low severity JetBrains Ktor vulnerability
Published Jun 1, 2023
·Updated
In JetBrains Ktor before 2.3.1 headers containing authentication data could be added to the exception's message
Affected Software
1 affected component
JetBrains Ktor<2.3.1
Remediation
Patch Available
Event History
Jun 1, 2023
CVE Published
via MITRE·06:12 PM
Data Sourced
via MITRE·06:12 PM
DescriptionSeverityWeakness
Data Sourced
07:15 PM
DescriptionWeakness
Data Sourced
via NVD·07:15 PM
RemedyDescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the vulnerability ID?
The vulnerability ID is CVE-2023-34339.
2
What is the severity of CVE-2023-34339?
The severity of CVE-2023-34339 is low.
3
What is the affected software?
The affected software is JetBrains Ktor before version 2.3.1.
4
What is the description of CVE-2023-34339?
The vulnerability in JetBrains Ktor before 2.3.1 allows adding headers containing authentication data to the exception's message.
5
How can I fix CVE-2023-34339?
To fix CVE-2023-34339, update JetBrains Ktor to version 2.3.1 or later.