glance-store@4.4.0 vulnerabilities

OpenStack Image Service Store Library

  • latest version

    4.8.1

  • latest non vulnerable version

  • first published

    10 years ago

  • latest version published

    4 months ago

  • licenses detected

  • Direct Vulnerabilities

    Known vulnerabilities in the glance-store package. This does not include vulnerabilities belonging to this package’s dependencies.

    How to fix?

    Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.

    Fix for free
    VulnerabilityVulnerable Version
    • M
    Logging of Sensitive Information

    glance-store is an OpenStack Image Service Store Library

    Affected versions of this package are vulnerable to Logging of Sensitive Information due to logging the access_key when the DEBUG log level is enabled.

    How to fix Logging of Sensitive Information?

    Upgrade glance-store to version 4.3.3, 4.7.0 or higher.

    [,4.3.3)[4.4.0,4.7.0)