Description
Use of Hard-coded Credentials in GitHub repository nuxtlabs/github-module prior to 1.6.2.
Remediation
References
https://github.com/nuxtlabs/github-module/commit/5490c43f729eee60f07920bf88c0aabdc1398b6e
https://huntr.dev/bounties/65096ef9-eafc-49da-b49a-5b88c0203ca6
Related Vulnerabilities
CVE-2023-28444 Vulnerability in npm package angular-server-side-configuration
CVE-2021-25864 Vulnerability in npm package node-red-contrib-huemagic
CVE-2022-31175 Vulnerability in npm package @ckeditor/ckeditor5-html-embed
CVE-2021-32622 Vulnerability in npm package matrix-react-sdk
CVE-2019-3875 Vulnerability in maven package org.keycloak:keycloak-server-spi-private