Users with appropriate file access may be able to access unencrypted user credentials saved by MongoDB Extension for VS Code in a binary file. These credentials may be used by malicious attackers to perform unauthorized actions. This vulnerability affects all MongoDB Extension for VS Code including and prior to version 0.7.0
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mongodb

Published: 2022-01-20T00:00:00

Updated: 2024-08-03T23:17:28.896Z

Reserved: 2021-05-05T00:00:00

Link: CVE-2021-32039

cve-icon Vulnrichment

Updated: 2024-08-03T23:17:28.896Z

cve-icon NVD

Status : Modified

Published: 2022-01-20T15:15:07.893

Modified: 2024-01-23T17:15:09.003

Link: CVE-2021-32039

cve-icon Redhat

No data.