CVE-2019-10184: Netapp Active Iq Unified Manager
High severity, CVSS 7.5. EPSS: 3.5% chance of exploitation in the next 30 days.
undertow before version 2.0.23.Final is vulnerable to an information leak issue. Web apps may have their directory structures predicted through requests without trailing slashes via the api.
Affected products
- Netapp Active Iq Unified Manager: affected versions not specified
- Red Hat JBoss Data Grid: affected versions not specified
- Red Hat JBoss Enterprise Application Platform: affected versions not specified; version 7.0.0 only; version 7.2 only; version 7.3 only; version 7.4 only
- Red Hat Openshift Application Runtimes: affected versions not specified; version 1.0 only
- Red Hat Single Sign-On: affected versions not specified; version 7.0 only; version 7.3 only
- Red Hat Undertow: before 2.0.23 (fixed in 2.0.23)
Published 2019-07-25. Last modified 2026-06-17.