If logging mode is set to DEBUG or a malformed MongoDB...
Moderate severity
Unreviewed
Published
Sep 17, 2026
to the GitHub Advisory Database
•
Updated Sep 17, 2026
Description
Published by the National Vulnerability Database
Sep 17, 2026
Published to the GitHub Advisory Database
Sep 17, 2026
Last updated
Sep 17, 2026
If logging mode is set to DEBUG or a malformed MongoDB connection string is used, application logs may collect sensitive information (if in use) such as passwords and AWS secure access keys.
References