Loading
Generated remediation guidance and an executive summary. No account required.
The collection remote for pulp_ansible stores tokens in plaintext instead of using pulp's encrypted field and exposes them in read/write mode via the API () instead of marking it as write only.
Cite this page
CVE-2022-3644. CVEDatabase.com. Retrieved 1 May 2026. https://cvedatabase.com/cve/CVE-2022-3644
Use CWE-256, Pulpproject vendor hub and Pulp Ansible product page to widen CVE-2022-3644 into its surrounding weakness, vendor, and product context.