The sensu rubygem prior to version 1.2.0 contains a CWE-522 (Insufficiently Protected Credentials) flaw that can result in sensitive configuration data (e.g. passwords) being logged in clear-text.
Users are advised to upgrade to rubygem version 1.2.1 or later.
{
"cwe_ids": [],
"github_reviewed": true,
"github_reviewed_at": "2020-06-16T21:18:47Z",
"nvd_published_at": null,
"severity": "LOW"
}