Headline
GHSA-8ggh-xwr9-3373: Ansible Community General Collection is vulnerable to exposure of sensitive information
A flaw was found in ansible-collection-community-general. This vulnerability allows for information exposure (IE) of sensitive credentials, specifically plaintext passwords, via verbose output when running Ansible with debug modes. Attackers with access to logs could retrieve these secrets and potentially compromise Keycloak accounts or administrative access.
Skip to content
Navigation Menu
AI CODE CREATION
GitHub CopilotWrite better code with AI
GitHub SparkBuild and deploy intelligent apps
GitHub ModelsManage and compare prompts
MCP RegistryNewIntegrate external tools
View all features
- Pricing
Provide feedback
Saved searches****Use saved searches to filter your results more quickly
Sign up
Appearance settings
- GitHub Advisory Database
- GitHub Reviewed
- CVE-2025-14010
Ansible Community General Collection is vulnerable to exposure of sensitive information
Moderate severity GitHub Reviewed Published Dec 4, 2025 to the GitHub Advisory Database • Updated Dec 5, 2025
Package
pip ansible (pip)
Affected versions
< 12.0.0
Description
Published to the GitHub Advisory Database
Dec 4, 2025