CVE Published: 18/11/2021 |
CVE Updated: 03/08/2024 |
CVE Year: 2021 Source: puppet |
Vendor: n/a |
Product: Puppet Continuous Delivery for Puppet Enterprise (CD4PE) Status : PUBLISHED
CVE-2021-27024 Description
A flaw was discovered in Continuous Delivery for Puppet Enterprise (CD4PE) that results in a user with lower privileges being able to access a Puppet Enterprise API token. This issue is resolved in CD4PE 4.10.0