← back
CVE-2021-27022CWE-532

CVE-2021-27022

3Vexday Risk Score

No sign of exploitation. No public exploitation artifact known so far.

ssvc Trackepss 0.9%
exploitation probability
0.9%top 41% of all CVEs
observed exploitation
nono source reports it
A flaw was discovered in bolt-server and ace where running a task with sensitive parameters results in those sensitive parameters being logged when they should not be. This issue only affects SSH/WinRM nodes (inventory service nodes).
Affected products
n/a · Puppet Enterprise