GHSA-2xwv-3cc9-fp7c
LOWCVE-2019-5483Versions of seneca prior to 3.9.0 are vulnerable to Sensitive Data Exposure. When a process using the package crashes all environment variables are printed. This may leak sensitive data such as access keys, especially given scenarios when log-monitoring systems store the error output.
- Affected
- < 3.9.0
- Fixed in
- 3.9.0
- Weakness
- CWE-209
- Published
- 2019-09-11
- Source
- github