OSV 1.4.0 · github-reviewed · 修改于 2020-09-01 02:49
发布时间
2019-09-12 07:07
GitHub 审查时间
2019-09-12 06:45
NVD 发布时间
—
源文件
advisories/github-reviewed/2019/09/GHSA-2xwv-3cc9-fp7c/GHSA-2xwv-3cc9-fp7c.json
Versions of seneca prior to 3.9.0 are vulnerable to Sensitive Data Exposure. When a process using the package crashes all environment variables are printed. This may leak sensitive data such as access keys, especially given scenarios when log-monitoring systems store the error output.
Upgrade to version 3.9.0 or later.