AIKIDO-2025-10059

applicationinsights-agent is vulnerable to Insertion of Sensitive Information into Log File

17

Low

applicationinsights-agent JAVA

AIKIDO-2025-10059: applicationinsights-agent is vulnerable to Insertion of Sensitive Information into Log File in versions 3.4.5 - 3.6.2.

Insertion of Sensitive Information into Log File
Vuln in 3.4.5 - 3.6.2
Fixed in 3.7.0
No CVE available
TL;DR

Who does this affect?

How can it be fixed?

Background info

Link to vendor website

open-source

Open-source

Aikido Intel is available under AGPL license, developers may freely use, modify, and distribute the vulnerability & malware feed.

share

License the intel database

Want to integrate our threat intelligence into your product? Get access through our commercial API.

aikido

Get protected by Aikido- it's free.

Easily secure your software supply chain, and more. Secure your your code, cloud, and runtime with Aikido all-in-one platform.

Secure everything you build, host and run with Aikido

Get Secure
cta graphic
Logo
Β© 2024 Aikido Security BV | BE0792914919
πŸ‡ͺπŸ‡Ί Registered address: Coupure Rechts 88, 9000, Ghent, Belgium
πŸ‡ͺπŸ‡Ί Office address: Gebroeders van Eyckstraat 2, 9000, Ghent, Belgium
πŸ‡ΊπŸ‡Έ Office address: 95 Third St, 2nd Fl, San Francisco, CA 94103, US
Any use of the intel.aikido.dev website and content is explicitly subject to Aikido Terms of Use.
The Intel vulnerability and malware feed is licensed under a dual license.