Mmastodon TechnologyCybersecurity first seen 5 h ago, last 5 h ago, peak #12
Apache APISIX vulnerability logs unmasked sensitive header values
Original: ๐จ EUVD-2026-90763 ๐ Score: 5.7/10 (CVSS v3.1) ๐ฆ Product: Apache APISIX ๐ข Vendor: Apache Software Foundation ๐ Updated: 2
A medium-severity vulnerability, EUVD-2026-90763, has been catalogued in Apache APISIX, the open-source API gateway maintained by the Apache Software Foundation. Rated 5.7 out of 10 under CVSS v3.1, the flaw involves the insertion of sensitive information into log files, with unmasked header values potentially being written in cleartext.
Why now: Security teams monitoring Apache APISIX deployments are being alerted to a newly updated vulnerability entry that could expose sensitive header data in logs.
Apache APISIXApache Software FoundationEUVD-2026-90763
Evidence
API: https://socialmediatrends-api.osmike.com/v1/trends/606584