CVE-2023-6460 Information
Dec 08, 2023
cve
Description
A potential logging of the firestore key via logging within nodejs-firestore exists - Developers who were logging objects through this._settings would be logging the firestore key as well potentially exposing it to anyone with logs read access. We recommend upgrading to version 6.1.0 to avoid this issue
Reference
https://github.com/googleapis/nodejs-firestore/pull/1742
Share on: