Publish GHSA-g3p6-82vc-43jh

This commit is contained in:
advisory-database[bot]
2025-06-06 16:01:39 +00:00
parent 262a88ab4f
commit 5c3a1312ed
@@ -1,12 +1,12 @@
{
"schema_version": "1.4.0",
"id": "GHSA-g3p6-82vc-43jh",
"modified": "2025-06-05T20:14:46Z",
"modified": "2025-06-06T15:59:53Z",
"published": "2025-06-05T16:53:23Z",
"aliases": [
"CVE-2025-48493"
],
"summary": "Yii 2 Redis may expose AUTH paramters in logs in case of connection failure",
"summary": "Yii 2 Redis may expose AUTH parameters in logs in case of connection failure",
"details": "### Impact\n\nOn failing connection extension writes commands sequence to logs. AUTH parameters are written in plain text exposing username and password. That might be an issue if attacker has access to logs.",
"severity": [
{