Skip to content

Update tools

ea83854
Select commit
Loading
Failed to load commit list.
Merged

Mcp vuln #364

Update tools
ea83854
Select commit
Loading
Failed to load commit list.
GitHub Advanced Security / CodeQL succeeded Feb 24, 2026 in 1m 21s

9 new alerts including 9 high severity security vulnerabilities

New alerts in code changed by this pull request

Security Alerts:

  • 9 high

See annotations below for details.

View all branch alerts.

Annotations

Check failure on line 50 in services/chatbot/src/chatbot/aws_credentials.py

See this annotation in the file changed.

Code scanning / CodeQL

Clear-text logging of sensitive information High

This expression logs
sensitive data (secret)
as clear text.

Check failure on line 188 in services/chatbot/src/chatbot/aws_credentials.py

See this annotation in the file changed.

Code scanning / CodeQL

Clear-text logging of sensitive information High

This expression logs
sensitive data (secret)
as clear text.

Check failure on line 242 in services/chatbot/src/chatbot/aws_credentials.py

See this annotation in the file changed.

Code scanning / CodeQL

Clear-text logging of sensitive information High

This expression logs
sensitive data (secret)
as clear text.

Check failure on line 315 in services/chatbot/src/chatbot/aws_credentials.py

See this annotation in the file changed.

Code scanning / CodeQL

Clear-text logging of sensitive information High

This expression logs
sensitive data (secret)
as clear text.
This expression logs
sensitive data (secret)
as clear text.
This expression logs
sensitive data (secret)
as clear text.
This expression logs
sensitive data (secret)
as clear text.

Check failure on line 317 in services/chatbot/src/chatbot/aws_credentials.py

See this annotation in the file changed.

Code scanning / CodeQL

Clear-text logging of sensitive information High

This expression logs
sensitive data (secret)
as clear text.
This expression logs
sensitive data (secret)
as clear text.
This expression logs
sensitive data (secret)
as clear text.
This expression logs
sensitive data (secret)
as clear text.

Check failure on line 381 in services/chatbot/src/chatbot/aws_credentials.py

See this annotation in the file changed.

Code scanning / CodeQL

Clear-text logging of sensitive information High

This expression logs
sensitive data (secret)
as clear text.
This expression logs
sensitive data (secret)
as clear text.
This expression logs
sensitive data (secret)
as clear text.
This expression logs
sensitive data (secret)
as clear text.

Check failure on line 383 in services/chatbot/src/chatbot/aws_credentials.py

See this annotation in the file changed.

Code scanning / CodeQL

Clear-text logging of sensitive information High

This expression logs
sensitive data (secret)
as clear text.
This expression logs
sensitive data (secret)
as clear text.
This expression logs
sensitive data (secret)
as clear text.
This expression logs
sensitive data (secret)
as clear text.

Check failure on line 181 in services/community/api/models/post.go

See this annotation in the file changed.

Code scanning / CodeQL

Database query built from user-controlled sources High

This query depends on a
user-provided value
.

Check failure on line 199 in services/community/api/models/post.go

See this annotation in the file changed.

Code scanning / CodeQL

Database query built from user-controlled sources High

This query depends on a
user-provided value
.