Loading
Percona XtraBackup before 2.4.20 unintentionally writes the command line to any resulting backup file output. This may include sensitive arguments passed at run time. In addition, when --history is passed at run time, this command line is also written to the PERCONA_SCHEMA.xtrabackup_history table.
Cite this page
CVE-2020-10997. CVEDatabase.com. Retrieved 1 May 2026. https://cvedatabase.com/cve/CVE-2020-10997
Use CWE-200, Percona vendor hub and Xtrabackup product page to widen CVE-2020-10997 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2022-25834, CVE-2022-26944 and CVE-2015-1027 for nearby disclosures in the same product family.