First published: Fri Jun 24 2022(Updated: )
Release of RHACS 3.69.2<br>Security Fix(es):<br><li> stackrox: Improper sanitization allows users to retrieve Notifier secrets from GraphQL API in plaintext (CVE-2022-1902)</li>
Affected Software | Affected Version | How to fix |
---|---|---|
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of RHSA-2022:5188 is considered important due to the potential exposure of sensitive data.
To fix RHSA-2022:5188, it is recommended to update to the latest release of RHACS which addresses the improper sanitization issue.
RHSA-2022:5188 addresses the vulnerability described as improper sanitization allowing retrieval of Notifier secrets from the GraphQL API.
RHSA-2022:5188 affects systems running the impacted version of the Red Hat Advanced Cluster Security (RHACS) software.
Currently, no official workarounds are provided for RHSA-2022:5188, so applying the patch is the best course of action.