CVE-2023-47390
CVSS 3.1 Score 7.5 of 10 (high)
Details
Published Nov 11, 2023
Updated: Nov 17, 2023
CWE ID 532
Summary
CVE-2023-47390 is a vulnerability affecting Headscale, a reverse proxy and load balancer, up to version 0.22.3. This issue results in bearer tokens being written to info-level logs, potentially exposing sensitive authentication information to unauthorized users with access to the logs. Attackers could exploit this vulnerability to obtain and misuse tokens, leading to unauthorized access and potential data breaches. It is recommended that users upgrade to the latest version of Headscale to mitigate this risk.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share