Skip to content

keys not tagged as "password", may leak in log messages #23

@yaauie

Description

@yaauie

Keys are validated as "string", which does not protect them from being output in log messages:

https://github.com/logstash-plugins/logstash-filter-cipher/blob/master/lib/logstash/filters/cipher.rb#L41

Metadata

Metadata

Assignees

No one assigned

    Labels

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions