We read every piece of feedback, and take your input very seriously.
To see all available qualifiers, see our documentation.
1 parent e513dbe commit facdf64Copy full SHA for facdf64
docs/reference/release-notes/6.8.asciidoc
@@ -3,6 +3,19 @@
3
4
Also see <<breaking-changes-6.8,Breaking changes in 6.8>>.
5
6
+[discrete]
7
+[[security-updates-6.8.14]]
8
+=== Security updates
9
+
10
+* {es} versions before 7.10.0 and 6.8.14 have an information
11
+disclosure issue when audit logging and the `emit_request_body` option are
12
+enabled. The {es} audit log could contain sensitive information,
13
+such as password hashes or authentication tokens. This could allow an
14
+{es} administrator to view these details.
15
+You must upgrade to {es} version 6.8.14 to obtain the fix.
16
+https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-7021[CVE-2020-7021]
17
18
19
[[bug-6.8.14]]
20
[float]
21
=== Bug fixes
0 commit comments