databricks-sql-connector is vulnerable to Debug Messages Revealing Unnecessary Information
20
Low Risk
Affected versions of the databricks-sql-connector library are vulnerable to the exposure of un-redacted sensitive data. If the LogLevel is set to DEBUG, urllib3 logs all request URLs, including pre-signed URLs, which are sensitive and should not be logged.
You are affected if you are using a version that falls within the vulnerable range.
databricks-sql-connector is vulnerable to Debug Messages Revealing Unnecessary Information in versions 0.9.0 - 3.0.2.
Upgrade the databricks-sql-connector library to the patch version.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

SOC 2Compliant
ISO 27001Compliant