PT-2024-25949 · Solidui · Solidui

Nevercodecorrect

·

Published

2024-05-05

·

Updated

2024-08-22

·

CVE-2024-34527

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions SolidUI version 0.4.0
Description The issue concerns an unnecessary print statement in the spaces plugin/app.py file for an OpenAI key. This printed string might be logged, potentially exposing sensitive information.
Recommendations For SolidUI version 0.4.0, consider removing or disabling the unnecessary print statement in the spaces plugin/app.py file to prevent potential logging of sensitive information.

Fix

Insertion into Log File

Weakness Enumeration

Related Identifiers

CVE-2024-34527

Affected Products

Solidui