CVE-2016-8647: Red Hat Ansible Engine

Medium severity, CVSS 4.9. EPSS: 1.4% chance of exploitation in the next 30 days.

An input validation vulnerability was found in Ansible's mysql_user module before 2.2.1.0, which may fail to correctly change a password in certain circumstances. Thus the previous password would still be active when it should have been changed.

Affected products

  • Red Hat Ansible Engine: before 2.2.1.0 (fixed in 2.2.1.0)
  • Red Hat Virtualization: version 4.1 only

Published 2018-07-26. Last modified 2026-06-17.