cvesecurityvulnerability
CVE-2026-19391: Red Hat insights-core Leaks SSSD and Pacemaker Passwords Into Uploaded Archives
CVE-2026-19391 is a credential disclosure bug in Red Hat insights-core where the password redaction layer only filters values under the key "password", leaving SSSD LDAP bind passwords and Pacemaker fence device credentials in cleartext within archives uploaded to console.redhat.com.