
CVE-2026-40945 Oxia is a metadata store and coordination system. Prior to 0.16.2, when OIDC authentication fails, the full bearer token is logged at DEBUG level in plaintext. If deb… https://www.cve.org/CVERecord?id=CVE-2026-40945
Post summary
The message announces a new CVE (CVE-2026-40945) detailing how bearer tokens are exposed in log files, without mentioning any PoC, exploit, or patch.
