CVE-2026-84499
Awaiting Analysis Awaiting Analysis - Queue

Password Disclosure in Ansible Automation Platform

Vulnerability report for CVE-2026-84499, including description, CVSS score, EPSS score, affected products, exploitability, helpful resources, and attack-flow context.

Publication date: 2026-09-23

Last updated on: 2026-09-23

Assigner: redhat-SADP

Description

A flaw was found in Red Hat Ansible Automation Platform's automation- controller. Survey questions of type password are write-only and stored encrypted, displayed only as a placeholder on read. When a schedule or workflow job template node is revalidated against a tightened survey specification, the controller decrypts the stored password and includes its plaintext value in the minimum/maximum length validation error message returned in the HTTP response. A user with the delegated JobTemplate Admin role can tighten the survey length constraint and trigger revalidation of a schedule or node created by another, higher-privileged user, thereby recovering that user's stored password in plaintext.

CVSS Scores

EPSS Scores

Probability:
Percentile:

Meta Information

Published
2026-09-23
Last Modified
2026-09-23
Generated
2026-09-24
AI Q&A
2026-09-23
EPSS Evaluated
N/A
NVD
EUVD

Affected Vendors & Products

Showing 3 associated CPEs
Vendor Product Version / Range
red_hat ansible_automation_platform *
red_hat ansible_automation_platform 2.7
red_hat automation_controller 4.8.1

Helpful Resources

Exploitability

CWE
CWE Icon
KEV
KEV Icon
CWE ID Description
CWE-209 The product generates an error message that includes sensitive information about its environment, users, or associated data.

Attack-Flow Graph

AI Quick Actions

Instant insights powered by AI
Executive Summary

This vulnerability in Red Hat Ansible Automation Platform's automation-controller allows a user with the JobTemplate Admin role to recover plaintext passwords stored in write-only survey fields. When a survey's length constraint is tightened, the system decrypts the password and includes it in an error message during revalidation of schedules or workflow job templates.

Detection Guidance

Check for unauthorized access to automation-controller audit logs or error messages containing plaintext passwords. Monitor HTTP 400 responses for schedules or workflow job templates with tightened survey constraints.

Impact Analysis

An attacker with JobTemplate Admin privileges could access passwords stored by higher-privileged users, potentially leading to unauthorized access to sensitive systems or data. The vulnerability requires authenticated access with specific privileges but could expose confidential information.

Compliance Impact

This vulnerability could lead to unauthorized access to sensitive data, violating confidentiality requirements in GDPR and HIPAA. Exposure of plaintext passwords may result in non-compliance with data protection regulations.

Mitigation Strategies

Apply patches from Red Hat when available. Restrict JobTemplate Admin role permissions to only necessary users. Review and remove any exposed plaintext passwords from logs or error messages.

Chat Assistant

Ask questions about this CVE
Hi! I’m here to help you understand CVE-2026-84499. Ask me anything about the vulnerability, its impact, or mitigation strategies.
0/70

EPSS Chart