CloudOrc / SolidUI

one sentence generates any graph
https://cloudorc.github.io/SolidUI-Website/
Apache License 2.0
550 stars 86 forks source link

[Question] Potential Information Leakage #279

Open nevercodecorrect opened 4 months ago

nevercodecorrect commented 4 months ago

Your environment

Latest one

Describe your questions

In code here, the open API key is output to the stdout. It could potentially leak the key to unauthorized actor as described in CWE-532. This print is not really necessary.

Some logs info or acctch file

xxx.log:


<!--日志文字贴到这里-->
github-actions[bot] commented 4 months ago

:blush: Welcome to the SolidUI community!! We are glad that you are contributing by opening this issue.

Please make sure to include all the relevant context. We will be here shortly.

If you are interested in contributing to our project, please let us know! You can check out our contributing guide on :point_right: How to Contribute.

If you have any questions or suggestions, please feel free to post them here or contact us via email at mengyoupanshan@gmail.com.

We appreciate your interest in SolidUI and look forward to working with you!

dlimeng commented 4 months ago

Welcome to submit PR