Uploaded image for project: 'SonarQube'
  1. SonarQube
  2. SONAR-12840

Do not disclose sensitive information in PR Decoration administration form

    XMLWordPrintable

    Details

    • Type: Bug
    • Status: Closed
    • Priority: Major
    • Resolution: Fixed
    • Affects Version/s: None
    • Fix Version/s: 8.7
    • Component/s: Branch & PR, Web, Web API
    • Labels:
      None
    • Edition:
      Developer
    • Production Notes:
      None

      Description

      Currently, in the PR Decoration settings form, we show the access tokens in plain text. We should not allow these keys to be retrieved via the webservices, only to be overridden.

        Attachments

          Activity

            People

            Assignee:
            wouter.admiraal Wouter Admiraal
            Reporter:
            wouter.admiraal Wouter Admiraal
            Votes:
            0 Vote for this issue
            Watchers:
            1 Start watching this issue

              Dates

              Due:
              Created:
              Updated:
              Resolved: