URL:
<http://savannah.gnu.org/bugs/?50904>
Summary: print reveals password
Project: GNU Health
Submitted by: yangoon
Submitted on: Mon 01 May 2017 10:27:06 AM UTC
Category: Security
Severity: 6 - Security
Item Group: None
Status: None
Privacy: Public
Assigned to: None
Open/Closed: Open
Discussion Lock: Any
Release: None
Module: thalamus
_______________________________________________________
Details:
Hi Luis,
thanks for all your work on GnuHealth.
A quick glance at the latest changeset for thalamus shows a print of
passwords.
http://hg.savannah.gnu.org/hgweb/health/rev/9a6757775e8c#l1.40
This print is probably just a leftover from development and should just be
removed. Even when logging at debug level, passwords should be masked.
Best,
Mathias
_______________________________________________________
Reply to this item at:
<http://savannah.gnu.org/bugs/?50904>
_______________________________________________
Message sent via/by Savannah
http://savannah.gnu.org/