Home / Vulnerability Database / Groovy : Privacy violation (String usage)
Groovy
Groovy : Privacy violation (String usage)
Classification
Overview
The content of the String object can not be deleted from memory by the software. Valuable data leak is possible.
If valuable data (passwords, credit card numbers, etc.) is not deleted from memory immediately after use, leak is possible. String objects are immutable; their values can only be removed by the JVM garbage collector. The garbage collector does not run until the virtual machine runs out of memory. Memory dump created in the case of process emergency stop may contain confidential information.
MEDIUM
DerScanner Severity Score
Do you want to fix Groovy : Privacy violation (String usage) in your application?
See also
Groovy
Groovy : Weak hashing algorithm
Groovy
Groovy : Hardcoded salt
Groovy
