Skip to content

Conversation

@ghost
Copy link

@ghost ghost commented Aug 18, 2023

No description provided.

@ghost
Copy link
Author

ghost commented Aug 18, 2023

Sample

host: 'localhost',
user: '__USER__',
password: '__PASS__',
user: '$USER',

Check failure

Code scanning / CodeQL

Hard-coded credentials

The hard-coded value "$USER" is used as [user name](1).
@brumensywh brumensywh closed this Oct 26, 2023
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

1 participant