{"id":"GHSA-7h6j-2268-fhcm","summary":"Traefik has an Improper Certificate Handling issue","details":"configurationwatcher.go in Traefik 2.x before 2.1.4 and TraefikEE 2.0.0 mishandles the purging of certificate contents from providers before logging.","aliases":["CVE-2020-9321","GO-2022-0808"],"modified":"2026-03-08T23:21:12.414614Z","published":"2021-09-02T22:00:01Z","database_specific":{"severity":"MODERATE","github_reviewed":true,"github_reviewed_at":"2021-08-02T22:19:23Z","nvd_published_at":"2020-03-16T19:15:00Z","cwe_ids":["CWE-200","CWE-295"]},"references":[{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2020-9321"},{"type":"WEB","url":"https://github.com/containous/traefik/pull/6281"},{"type":"WEB","url":"https://github.com/traefik/traefik/pull/6281"},{"type":"WEB","url":"https://github.com/containous/traefik/releases/tag/v2.1.4"},{"type":"PACKAGE","url":"https://github.com/traefik/traefik"},{"type":"WEB","url":"https://github.com/traefik/traefik/releases/tag/v2.1.4"}],"affected":[{"package":{"name":"github.com/traefik/traefik","ecosystem":"Go","purl":"pkg:golang/github.com/traefik/traefik"},"ranges":[{"type":"SEMVER","events":[{"introduced":"0"},{"fixed":"2.1.4"}]}],"database_specific":{"source":"https://github.com/github/advisory-database/blob/main/advisories/github-reviewed/2021/09/GHSA-7h6j-2268-fhcm/GHSA-7h6j-2268-fhcm.json"}}],"schema_version":"1.9.0","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N/E:U/RL:O/RC:C"}]}