CVE-2021-32039

Publication date

2022-01-20 14:50:10

Family

mongodb

State

PUBLISHED

Description

Users with appropriate file access may be able to access unencrypted user credentials saved by MongoDB Extension for VS Code in a binary file. These credentials may be used by malicious attackers to perform unauthorized actions. This vulnerability affects all MongoDB Extension for VS Code including and prior to version 0.7.0