Junglewise Threat Intelligence

CVE-2020-14332: PYSEC-2020-4 - A flaw was found in the Ansible Engine when using module_args. Tasks executed with check mode (--check-mode) do not properly neutralize sens

CVE-2020-14332 · Severity: low · CVSS 3 · Published 2020-09-11

Technologies: ansible (PyPI). Vendors: PyPI.

Executive brief

A flaw was found in the Ansible Engine when using module_args. Tasks executed with check mode (--check-mode) do not properly neutralize sensitive data exposed in the event data. This flaw allows unauthorized users to read this data. The highest threat from this vulnerability is to confidentiality.

Affected products

  • PyPI ansible

Related threats