{ "id": "CVE-2023-41752", "sourceIdentifier": "security@apache.org", "published": "2023-10-17T07:15:09.960", "lastModified": "2023-10-17T07:15:09.960", "vulnStatus": "Received", "descriptions": [ { "lang": "en", "value": "Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Apache Traffic Server.This issue affects Apache Traffic Server: from 8.0.0 through 8.1.8, from 9.0.0 through 9.2.2.\n\nUsers are recommended to upgrade to version 8.1.9 or 9.2.3, which fixes the issue.\n\n" } ], "metrics": {}, "weaknesses": [ { "source": "security@apache.org", "type": "Primary", "description": [ { "lang": "en", "value": "CWE-200" } ] } ], "references": [ { "url": "https://lists.apache.org/thread/5py8h42mxfsn8l1wy6o41xwhsjlsd87q", "source": "security@apache.org" } ] }