CVE-2026-103371: Apache Geode: Management REST API: Insertion of Sensitive Information into Log File
Published Oct 7, 2026
·Updated
Insertion of Sensitive Information into Log File in Apache Geode Web Management.
This issue affects Apache Geode: from 2.0.0 before 2.0.3.
Users are recommended to upgrade to version 2.0.3, which fixes the issue.
Affected Software
1 affected component
Apache Geode>=2.0.0<2.0.3
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
Apache Geodeto a version that resolves this vulnerability.Fixed in 2.0.3
Event History
Oct 7, 2026
CVE Published
via MITRE·06:46 PM
Data Sourced
via MITRE·06:46 PM
Description
Data Sourced
via NVD·07:17 PM
DescriptionSeverityWeakness