CVE detail
CVE-2026-9073
A flaw was found in foreman-mcp-server. This component utilizes two distinct logging mechanisms that can expose sensitive session and authentication data. One mechanism logs session identifiers, which are treated as authentication credentials, at an informational level. The other, when debug logging is enabled, incompletely sanitizes HTTP request headers, leading to the cleartext logging of sensitive information such as authorization tokens and API keys. This vulnerability can result in a confidentiality breach, as sensitive authentication data is persisted in plain text within container logs, increasing the risk if logs are forwarded to a centralized platform.
Buzz score
Why this CVE is surfacing
This all-time snapshot uses the same composite formula as Trending across a 30-year evidence window, rather than a current rolling window.
Buzz score components · mention 16.1 · diversity 10.0 · KEV 0.0 · OTX 0.0 · PoC 0.0
Why it matters now
Mention timeline
- Total mentions
- 0
- within the 30d window
- Peak daily
- 0
- highest bucket
Evidence
Source links by recency
4 source links · newest first
- https://bugzilla.redhat.com/show_bug.cgi?id=2480151bugzilla.redhat.com
No excerpt available.
Exploitbugzilla.redhat.comJun 23, 2026, 9:17 PM - https://access.redhat.com/security/cve/CVE-2026-9073access.redhat.com
No excerpt available.
Vendor Advisoryaccess.redhat.comJun 23, 2026, 9:17 PM - https://access.redhat.com/errata/RHSA-2026:28438access.redhat.com
No excerpt available.
Vendor Advisoryaccess.redhat.comJun 23, 2026, 9:17 PM - https://access.redhat.com/errata/RHSA-2026:28405access.redhat.com
No excerpt available.
Vendor Advisoryaccess.redhat.comJun 23, 2026, 9:17 PM
Exploit code
Public exploit repository references
Public PoC repositories are third-party, potentially unsafe artifacts. Treat their code as untrusted and use it only on authorized systems in an isolated, least-privilege environment. cvebuzz does not execute the code or verify that an exploit works.
0 repository references · best confidence N/A · max 0 stars
Related records
Similar CVEs
6 related CVEs with shared weakness or product evidence
- CVE-2019-3891CVSS 7.8 · High
It was discovered that a world-readable log file belonging to Candlepin component of Red Hat Satellite 6.4 leaked the credentials of the Candlepin database. A malicious user with…
- CVE-2026-5142CVSS 6.5 · Medium
A flaw was found in foreman. Authenticated users with 'view_keypairs' permission can bypass taxonomy scoping, allowing them to download private SSH (Secure Shell) keys from other…
- CVE-2026-5138CVSS 4.3 · Medium
A flaw was found in Foreman. An authenticated user with host-edit permissions could exploit a cross-tenant information disclosure vulnerability. This flaw occurs because the taxon…
- CVE-2026-5135CVSS 6.5 · Medium
A flaw was found in Foreman. This broken access control vulnerability allows an authenticated user with host-edit permissions to retarget an existing lookup value override to a di…
- CVE-2026-5136CVSS 8.8 · High
A flaw was found in Foreman. The Usergroup model in Foreman does not properly validate role assignments against the calling user's permissions. This allows an authenticated user w…
- CVE-2026-13316CVSS 4.4 · Medium
A flaw has been found in foreman when HTTP parameters are modified in http_proxies_controller and http_proxy files. Attackers can perform an SSRF attack and steal cloud metadata s…