CVE-2024-40636: Steeltoe Leaks Basic Auth Credentials to Logs After Fetch Registry Error
When utilizing multiple Eureka server service URLs with basic auth and encountering an issue with fetching the service registry, an error is logged with the Eureka server service URLs but only the first URL is masked.
References
Detect and mitigate CVE-2024-40636 with GitLab Dependency Scanning
Secure your software supply chain by verifying that all open source dependencies used in your projects contain no disclosed vulnerabilities. Learn more about Dependency Scanning →