couchbase couchbase-server CVE-2021-37842 is a vulnerability in Couchbase Server
Published on November 2, 2021

metakv in Couchbase Server 7.0.0 uses Cleartext for Storage of Sensitive Information. Remote Cluster XDCR credentials can get leaked in debug logs. Config key tombstone purging was added in Couchbase Server 7.0.0. This issue happens when a config key, which is being logged, has a tombstone purger time-stamp attached to it.

NVD


Products Associated with CVE-2021-37842

Want to know whenever a new CVE is published for Couchbase Server? stack.watch will email you.

 

Exploit Probability

EPSS
0.16%
Percentile
36.06%

EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.