Description

A flaw was found in Infinispan CLI. A sensitive password, decoded from a Base64-encoded Kubernetes secret, is processed in plaintext and included in a command string that may expose the data in an error message when a command is not found.

INFO

Published Date :

2025-06-26T21:28:59.501Z

Last Modified :

2026-01-08T03:11:10.828Z

Source :

redhat
AFFECTED PRODUCTS

The following products are affected by CVE-2025-5731 vulnerability.

Vendors Products
Infinispan
  • Infinispan
Redhat
  • Data Grid
  • Jboss Data Grid
  • Jboss Enterprise Application Platform
  • Jboss Enterprise Application Platform Expansion Pack
  • Jbosseapxp

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact