lib/brbackup.rb in the brbackup gem 0.1.1 for Ruby places the database password on the mysql command line, which allows local users to obtain sensitive information by listing the process.
Loading...
Loading...
Score 7.8 from GitHub Security Advisory (severity: HIGH) published 2018-03-05. NVD baseline CVSS 7.8; sources differ by 0.0.
lib/brbackup.rb in the brbackup gem 0.1.1 for Ruby places the database password on the mysql command line, which allows local users to obtain sensitive information by listing the process.
January 10, 2018
November 21, 2024
See which npm, PyPI, Go, and Maven packages are affected by CVE-2014-5004
EchelonGraph automatically scans your cloud infrastructure and maps CVE exposure using blast radius analysis.