Vulnerabilities > Google > Bazel > Medium

DATE CVE VULNERABILITY TITLE RISK
2022-10-26 CVE-2022-3474 Insufficiently Protected Credentials vulnerability in Google Bazel 5.0.0
A bad credential handling in the remote assets API for Bazel versions prior to 5.3.2 and 4.2.3 sends all user-provided credentials instead of only the required ones for the requests.
network
low complexity
google CWE-522
4.3