Vulnerabilities > Apache > Jackrabbit OAK > 1.4.17

DATE CVE VULNERABILITY TITLE RISK
2020-01-28 CVE-2020-1940 Improper Cross-boundary Removal of Sensitive Data vulnerability in Apache Jackrabbit OAK
The optional initial password change and password expiration features present in Apache Jackrabbit Oak 1.2.0 to 1.22.0 are prone to a sensitive information disclosure vulnerability.
network
low complexity
apache CWE-212
7.5