Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:25541
HistoryJun 01, 2020 - 8:38 a.m.

Information Disclosure

2020-06-0108:38:28
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
5

EPSS

0.002

Percentile

55.1%

snyk-broker is vulnerable to information disclosure. The vulnerability exists because it does not prevent the leakage of origin information in the function bunyan.createLogger, allowing the attacker to get the sensitive information from the logs as it stores private keys with logging level setting as DEBUG.

EPSS

0.002

Percentile

55.1%

Related for VERACODE:25541