Kirk True created KAFKA-13446: --------------------------------- Summary: Remove JWT access token from logs Key: KAFKA-13446 URL: https://issues.apache.org/jira/browse/KAFKA-13446 Project: Kafka Issue Type: Bug Components: security Affects Versions: 3.1.0 Reporter: Kirk True Assignee: Kirk True Fix For: 3.1.0
The OAuth code logs the access token on both the client and the server, potentially exposing service account details. Remove all logging entries to prevent this from leaking. -- This message was sent by Atlassian Jira (v8.20.1#820001)