Issues » Improper Handling of Database Credentials During Logging

Issue: SI-70
Date: Mar 15, 2024, 1:00:00 AM
Severity: Medium
Requires Admin Access: No
Fix Version: 24.03.22 / 22.03.15 LTS / 23.01.15 LTS / 23.10.24v8 LTS
Credit: Internal Security Team
Description:

The username and password for PostgreSQL database connections appears in the log output visible in the System → Maintenance tool. 

Mitigation:

Database credentials are prohibited from logging in the log output.

References

Highly Rated and Recommended

We're rated Excellent 4.2/5 stars on G2 - with 95+ verified reviews