LOW
GHSA-mpx4-jmpr-vm8v
PGHoard: Password written to debug log
상세
### Impact When using .pgpass, database connection information including the username and password will be logged at the debug level.
### Patches Upgrade to version 2.7.1 or greater.
### Workarounds Filter out debug-level logs.
### References This issue was discovered by BugCrowd user DRAKOKORIAN.
이 버전이 영향받나요?
사용 중인 패키지 버전을 입력하면 즉시 평가합니다.
영향 패키지
PyPI / pghoard
최초 영향 버전:
0 No fixed version published yet for pghoard (pip). Pin to a known-safe version or switch to an alternative.