In Apache Hadoop 2.7.3 and 2.7.4, the security fix for CVE-2016-3086 is incomplete. The YARN NodeManager can leak the password for credential store provider used by the NodeManager to YARN Applications.
3f82bb70cc260897994d7a6305856fc22e38b2a30678a5ebd34fecaaebd9d69e