CVE-2019-3830: Openstack Ceilometer

High severity, CVSS 7.8. EPSS: 0.4% chance of exploitation in the next 30 days.

A vulnerability was found in ceilometer before version 12.0.0.0rc1. An Information Exposure in ceilometer-agent prints sensitive configuration data to log files without DEBUG logging being activated.

Affected products

  • Openstack Ceilometer: up to and including 11.01; from 2013.1, up to and including 2015.1.4
  • Red Hat Openstack: version 10 only

Published 2019-03-26. Last modified 2026-06-17.