django-celery-results through 1.2.1 stores task results in the database. Among the data it stores are the variables passed into the tasks. The variables may contain sensitive cleartext information that does not belong unencrypted in the database.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2020-0063 | django-celery-results through 1.2.1 stores task results in the database. Among the data it stores are the variables passed into the tasks. The variables may contain sensitive cleartext information that does not belong unencrypted in the database. |
Github GHSA |
GHSA-fvx8-v524-8579 | django-celery-results Stores Sensitive Information In Cleartext |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
| Link | Providers |
|---|---|
| https://github.com/celery/django-celery-results/issues/142 |
|
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-04T14:00:47.514Z
Reserved: 2020-08-11T00:00:00
Link: CVE-2020-17495
No data.
Status : Modified
Published: 2020-08-11T21:15:10.943
Modified: 2024-11-21T05:08:13.470
Link: CVE-2020-17495
No data.
OpenCVE Enrichment
No data.
EUVD
Github GHSA