Skip to content

Possible security issue: hard-coded password #20

Open
@akondasif

Description

@akondasif

Greetings,

We are security researchers and we are looking for insecure coding patterns and configurations in the microservice architecture repositories. In your repository, we have found instances of hard-coded passwords. According to CWE, "A hard-coded password typically leads to a significant authentication failure that can be difficult for the system administrator to detect."

Hopefully, you agree and will fix it.

Source: https://github.com/livelessons-spring/building-microservices/blob/master/livelessons-testing/livelessons-testing-wiremock/src/main/resources/application.properties and https://github.com/livelessons-spring/building-microservices/blob/master/livelessons-security/livelessons-security-https/src/main/resources/application.yml and https://github.com/livelessons-spring/building-microservices/blob/master/livelessons-testing/livelessons-testing-spring/src/main/resources/application.properties

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions