Sensitive Information Leakage in Apache Geode Web Management
CVE-2026-103371

Currently unrated

Key Information:

Vendor

Apache

Vendor
CVE Published:
7 October 2026

What is CVE-2026-103371?

A vulnerability in Apache Geode can lead to the insertion of sensitive information into log files through the Web Management interface. This issue affects versions prior to 2.0.3, and it is crucial for users to upgrade to the latest version for enhanced security. Failing to address this vulnerability may expose sensitive data inadvertently logged during web management operations, potentially leading to significant security risks.

Affected Version(s)

Apache Geode 2.0.0 < 2.0.3

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

Wanxin Yin / yaklang.io
.