CVE-2019-14839: Red Hat Business-Central

High severity, CVSS 7.5. EPSS: 1% chance of exploitation in the next 30 days.

It was observed that while login into Business-central console, HTTP request discloses sensitive information like username and password when intercepted using some tool like burp suite etc.

Affected products

  • Red Hat Business-Central: up to and including 7.48.0
  • Red Hat Descision Manager: version 7.0 only
  • Red Hat Process Automation: version 7.0 only

Published 2022-04-01. Last modified 2026-06-17.