{"id":"CVE-2019-14856","aliases":["GHSA-6fq2-x65v-v9h7","PYSEC-2019-146"],"url":"https://o3.security/vulnerability/CVE-2019-14856","summary":"Ansible password prompts could expose passwords","details":"ansible before versions 2.8.6, 2.7.14, 2.6.20 is vulnerable to a None","published":"2019-11-26T14:15:11.437Z","modified":"2026-08-07T11:31:33.001198323Z","cvss":{"score":6.5,"severity":"MEDIUM","vector":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N"},"epss":{"score":0.01663,"percentile":0.74512,"asOf":"2026-08-23"},"cisaKev":null,"exploitsKnown":0,"affectedPackages":[{"ecosystem":"PyPI","name":"ansible","fixedVersion":"2.8.6"},{"ecosystem":"PyPI","name":"ansible","fixedVersion":"2.7.14"},{"ecosystem":"PyPI","name":"ansible","fixedVersion":"2.6.20"}],"fix":null,"references":[{"type":"ADVISORY","url":"http://lists.opensuse.org/opensuse-security-announce/2020-04/msg00021.html"},{"type":"ADVISORY","url":"http://lists.opensuse.org/opensuse-security-announce/2020-04/msg00026.html"},{"type":"ADVISORY","url":"https://access.redhat.com/errata/RHSA-2020:0756"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2019-14856"}],"provenance":{"sources":["OSV.dev","FIRST.org (EPSS)"],"lastVerified":"2026-08-07T11:31:33.001198323Z"}}