-
Bug
-
Resolution: Done-Errata
-
Undefined
-
3.0.0.GA
-
None
-
False
-
-
False
-
-
Description
A data leak vulnerability has been discovered in the io.quarkus:quarkus-vertx package. This flaw can lead to information disclosure if a Vert.x context that has already been duplicated is subsequently duplicated again. In such a scenario, sensitive data residing within that context may be unintentionally exposed.
Mitigation
Mitigation for this issue is either not available or the currently available options do not meet the Red Hat Product Security criteria comprising ease of use and deployment, applicability to widespread installation base or stability.
Additional information
Bugzilla 2374376: io.quarkus/quarkus-vertx: Quarkus potential data leak
- links to
-
RHSA-2025:150103
Streams for Apache Kafka 3.0.0 release and security update