Loading HuntDB...

GHSA-6fjw-fw76-494w

GitHub Security Advisory

⚠ Unreviewed MODERATE Has CVE

Advisory Details

Users with appropriate file access may be able to access unencrypted user credentials saved by MongoDB Extension for VS Code in a binary file. These credentials may be used by malicious attackers to perform unauthorized actions. This vulnerability affects all MongoDB Extension for VS Code including and prior to version 0.7.0

Related CVEs

Key Information

GHSA ID
GHSA-6fjw-fw76-494w
Published
January 21, 2022 12:00 AM
Last Modified
January 23, 2024 6:31 PM
CVSS Score
5.0 /10
Primary Ecosystem
Unknown
Primary Package
Unknown
GitHub Reviewed
✗ No

Dataset

Last updated: July 6, 2025 6:30 AM

Data from GitHub Advisory Database. This information is provided for research and educational purposes.