Releem / mysqlconfigurer

Releem is a simple MySQL tuning tool to improve database performance and reduce servers costs.
https://releem.com
GNU General Public License v3.0
256 stars 27 forks source link

MySQL Root User password is stored in web cache #321

Open Ragowit opened 3 months ago

Ragowit commented 3 months ago

I noticed the Releem Agent was not running for some reason, and followed the Automatic Installation tool to reinstall it again. When focus was on the "MySQL Root User password" input box so did I notice that it had a suggestion for my password from when I used it previously.

I believe this can be a security issue.

I think by adding autocomplete="off" on the input-field will solve the issue.

drupaladmin commented 3 months ago

@Ragowit Thank you, great suggestion. We'll try to fix it.

Re unavailable Releem Agent please send me to hello@releem.com Releem Agent logs to find the root cause: journalctl -u releem-agent