{"id":"PYSEC-2024-185","details":"Nebari through 2024.4.1 prints the temporary Keycloak root password.","aliases":["CVE-2024-34529","GHSA-vjc4-3vgx-pq9h"],"modified":"2026-06-10T17:02:23.539340901Z","published":"2024-05-06T00:15:10Z","references":[{"type":"REPORT","url":"https://github.com/nebari-dev/nebari/issues/2282"},{"type":"WEB","url":"https://github.com/nebari-dev/nebari/blob/5463e8df9e8d53a266a7b9d3d4e27353ec43c40b/src/_nebari/deploy.py#L71"},{"type":"ADVISORY","url":"https://github.com/advisories/GHSA-vjc4-3vgx-pq9h"}],"affected":[{"package":{"name":"nebari","ecosystem":"PyPI","purl":"pkg:pypi/nebari"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"2024.6.1rc2"}]}],"versions":["0.0.1","2022.10.1","2022.10.1rc1","2022.10.1rc2","2022.11.1","2022.11.1rc1","2022.11.1rc4","2023.1.1","2023.1.1rc1","2023.10.1","2023.10.1rc1","2023.11.1","2023.11.1rc1","2023.12.1","2023.12.1rc1","2023.4.1","2023.4.1a4","2023.4.1a5","2023.5.1","2023.5.1rc1","2023.7.1","2023.7.1rc1","2023.7.2","2023.7.2rc1","2023.9.1rc1","2024.1.1","2024.1.1rc1","2024.1.1rc2","2024.1.1rc3","2024.1.1rc4","2024.1.1rc5","2024.3.1","2024.3.1rc1","2024.3.1rc2","2024.3.2","2024.3.2rc1","2024.3.3","2024.3.3rc1","2024.4.1","2024.4.1rc1","2024.5.1","2024.5.1rc1","2024.6.1rc1"],"database_specific":{"source":"https://github.com/pypa/advisory-database/blob/main/vulns/nebari/PYSEC-2024-185.yaml"}}],"schema_version":"1.7.5"}