PT-2022-13114 · Loguru+1 · Loguru+1

Published

2022-01-25

·

Updated

2026-02-24

·

CVE-2022-0338

CVSS v4.0

5.3

Medium

VectorAV:N/AC:L/AT:N/PR:L/UI:N/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N
Name of the Vulnerable Software and Affected Versions Conda loguru versions prior to 0.5.3
Description The issue concerns the insertion of sensitive information into log files and improper privilege management in Conda loguru.
Recommendations For versions prior to 0.5.3, update to version 0.5.3 or later to resolve the issue.

Exploit

Fix

Improper Privilege Management

Insertion into Log File

Incorrect Permission

Weakness Enumeration

Related Identifiers

CVE-2022-0338
GHSA-39PH-WR67-J4XQ
PYSEC-2022-14

Affected Products

Debian
Loguru