Security
Headlines
HeadlinesLatestCVEs

Headline

GHSA-8ggh-xwr9-3373: Ansible Community General Collection is vulnerable to exposure of sensitive information

A flaw was found in ansible-collection-community-general. This vulnerability allows for information exposure (IE) of sensitive credentials, specifically plaintext passwords, via verbose output when running Ansible with debug modes. Attackers with access to logs could retrieve these secrets and potentially compromise Keycloak accounts or administrative access.

ghsa
#vulnerability#git#intel

Skip to content

Navigation Menu

    • AI CODE CREATION

      • GitHub CopilotWrite better code with AI

      • GitHub SparkBuild and deploy intelligent apps

      • GitHub ModelsManage and compare prompts

      • MCP RegistryNewIntegrate external tools

View all features
  • Pricing

Provide feedback

Saved searches****Use saved searches to filter your results more quickly

Sign up

Appearance settings

  1. GitHub Advisory Database
  2. GitHub Reviewed
  3. CVE-2025-14010

Ansible Community General Collection is vulnerable to exposure of sensitive information

Moderate severity GitHub Reviewed Published Dec 4, 2025 to the GitHub Advisory Database • Updated Dec 5, 2025

Package

pip ansible (pip)

Affected versions

< 12.0.0

Description

Published to the GitHub Advisory Database

Dec 4, 2025

ghsa: Latest News

GHSA-8wvc-869r-xfqf: Open WebUI Vulnerable to Stored DOM XSS via Note 'Download PDF'