Nixpkgs security tracker

Login with GitHub

Suggestion detail

Untriaged
created 4 months ago Activity log
  • Created suggestion
Jans CLI stores plaintext passwords in the local cli_cmd.log file

The Janssen Project is an open-source identity and access management (IAM) platform. In versions 1.9.0 and below, Janssen stores passwords in plaintext in the local cli_cmd.log file. This is fixed in the nightly prerelease.

Affected products

jans
  • ==< nightly

Matching in nixpkgs

pkgs.jansson

C library for encoding, decoding and manipulating JSON data

Package maintainers