Home

Description

MyHoard is a daemon for creating, managing and restoring MySQL backups. Starting in version 1.0.1 and prior to version 1.3.0, in some cases, myhoard logs the whole backup info, including the encryption key. Version 1.3.0 fixes the issue. As a workaround, direct logs into /dev/null.

PUBLISHED Reserved 2025-12-11 | Published 2025-12-18 | Updated 2025-12-18 | Assigner GitHub_M




HIGH: 7.1CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:L/A:N

Problem types

CWE-402: Transmission of Private Resources into a New Sphere ('Resource Leak')

Product status

>= 1.0.1, < 1.3.0
affected

References

github.com/...yhoard/security/advisories/GHSA-v42r-6hr9-4hcr

github.com/...ommit/fac89793bfc8c81ae040aadf5292f5d0100b6640

cve.org (CVE-2025-67745)

nvd.nist.gov (CVE-2025-67745)

Download JSON

Data based on CVE®. Copyright © 1999-2025, The MITRE Corporation. All rights reserved.