A flaw was found in the Ansible Engine when using module_args. Tasks executed with check mode (--check-mode) do not properly neutralize sensitive data exposed in the event data. This flaw allows unauthorized users to read this data. The highest threat from this vulnerability is to confidentiality.
| Package (Ecosystem) | Introduced | Fixed | Limit |
|---|---|---|---|
| ansible(PyPI) | 0 | 2.8.14 | N/A |
| ansible(PyPI) | 2.9.0a1 | 2.9.12 | N/A |
| ansible(PyPI) | 2.10.0a1 | 2.10.1rc2 | N/A |
CVSS Metrics