Vulnerabilities (CVE)

Filtered by vendor Datadoghq
Filtered by product Datadog-api-client-java
Angry Yack Logo
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2021-21331 1 Datadoghq 1 Datadog-api-client-java 2024-11-21 4.3 MEDIUM 3.0 LOW
The Java client for the Datadog API before version 1.0.0-beta.9 has a local information disclosure of sensitive information downloaded via the API using the API Client. The Datadog API is executed on a unix-like system with multiple users. The API is used to download a file containing sensitive information. This sensitive information is exposed locally to other users. This vulnerability exists in the API Client for version 1 and 2. The method `prepareDownloadFilecreates` creates a temporary file ...

Show More