Description
In AEgir greater than or equal to 21.7.0 and less than 21.10.1, aegir publish and aegir build may leak secrets from environment variables in the browser bundle published to npm. This has been fixed in 21.10.1.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2020-0439 | In AEgir greater than or equal to 21.7.0 and less than 21.10.1, aegir publish and aegir build may leak secrets from environment variables in the browser bundle published to npm. This has been fixed in 21.10.1. |
Github GHSA |
GHSA-qfcv-5whw-7pcw | Exposure of Sensitive Information to an Unauthorized Actor in AEgir |
References
History
No history.
Status: PUBLISHED
Assigner: GitHub_M
Published:
Updated: 2024-08-04T11:21:14.488Z
Reserved: 2020-03-30T00:00:00.000Z
Link: CVE-2020-11059
No data.
Status : Modified
Published: 2020-05-27T21:15:11.127
Modified: 2024-11-21T04:56:42.070
Link: CVE-2020-11059
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD
Github GHSA