CVE 5.5 MEDIUM

Ansible-collection-community-general: ansible-collection-community-general: keycloak user module leaks credentials in verbose output_CVE-2025-14010

5.5 / 10
MEDIUM
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N

Description

A flaw was found in ansible-collection-community-general. This vulnerability allows for information exposure (IE) of sensitive credentials, specifically plaintext passwords, via verbose output when running Ansible with debug modes. Attackers with access to logs could retrieve these secrets and potentially compromise Keycloak accounts or administrative access.

Basic Information

ID CVE-2025-14010
Source redhat
Published Dec 4, 2025 at 09:51

Affected Product

Vendor Red Hat
Product Red Hat Ceph Storage 5

References

💭 Join the Security Discussion

🔒 Your email address will not be published. Required fields are marked *

⚠️ Please be respectful and constructive in your comments. Security discussions should remain professional.