Fix code scanning alert - Clear-text logging of sensitive information #2140

Closed
opened 2026-02-05 05:17:45 +03:00 by OVERLORD · 2 comments
Owner

Originally created by @etnoy on GitHub (Feb 7, 2024).

Originally assigned to: @etnoy on GitHub.

Tracking issue for:

Originally created by @etnoy on GitHub (Feb 7, 2024). Originally assigned to: @etnoy on GitHub. <!-- Warning: The suggested title contains the alert rule name. This can expose security information. --> Tracking issue for: - [ ] https://github.com/immich-app/immich/security/code-scanning/33
OVERLORD added the 🗄️serverchangelog:security labels 2026-02-05 05:17:45 +03:00
Author
Owner

@bo0tzz commented on GitHub (Feb 7, 2024):

Is this an actual issue? Seems to me like it's working as intended?

Nvm, I thought we were generating a random password.

@bo0tzz commented on GitHub (Feb 7, 2024): ~~Is this an actual issue? Seems to me like it's working as intended?~~ Nvm, I thought we were generating a random password.
Author
Owner

@jrasm91 commented on GitHub (Feb 7, 2024):

This does generate a random password if you don't type one in, which is why it is printed out in that case.

@jrasm91 commented on GitHub (Feb 7, 2024): This does generate a random password if you don't type one in, which is why it is printed out in that case.
Sign in to join this conversation.
1 Participants
Notifications
Due Date
No due date set.
Dependencies

No dependencies set.

Reference: immich-app/immich#2140