CVE-2018-11320: Octopus Server
Critical severity, CVSS 9.8. EPSS: 1.4% chance of exploitation in the next 30 days.
In Octopus Deploy 2018.4.4 through 2018.5.1, Octopus variables that are sourced from the target do not have sensitive values obfuscated in the deployment logs.
Affected products
- Octopus Octopus Server: from 2018.4.4, up to and including 2018.5.1
Published 2018-05-21. Last modified 2026-06-17.