GMS-2020-739: Sensitive Data Exposure in ibm_db
(updated )
Versions of ibm_db
prior to 2.6.0 are vulnerable to Sensitive Data Exposure. The package printed database credentials in plaintext in logs while in debug mode.
Recommendation
Upgrade to version 2.6.0 or later and ensure sensitive information was not logged.
References
Detect and mitigate GMS-2020-739 with GitLab Dependency Scanning
Secure your software supply chain by verifying that all open source dependencies used in your projects contain no disclosed vulnerabilities. Learn more about Dependency Scanning →