Red Hat · Wildfly · CVE-2020-25640
**Name of the Vulnerable Software and Affected Versions**
WildFly versions prior to 21.0.0.Final
**Description**
A flaw was discovered in WildFly where the resource adapter logs plain text JMS password at warning level on connection error, inserting sensitive information in the log file.
**Recommendations**
For versions prior to 21.0.0.Final, update to version 21.0.0.Final or later to resolve the issue. As a temporary workaround, consider restricting access to log files to minimize the risk of sensitive information exposure.