Sensitive Information Logging Vulnerability in Apache APISIX by Apache
CVE-2026-78242
5.7MEDIUM
What is CVE-2026-78242?
A vulnerability exists in Apache APISIX that allows sensitive information, specifically unmasked header values, to be logged under certain response structures. This could potentially expose confidential data stored in logs, posing a security risk. Users are advised to upgrade to version 3.18.0 to mitigate this issue effectively.
Affected Version(s)
Apache APISIX 3.17.0