Skip to content

Commit 204984f

Browse files
chore: update CHANGELOG.md
1 parent 5fbfd14 commit 204984f

File tree

1 file changed

+2
-1
lines changed

1 file changed

+2
-1
lines changed

CHANGELOG.md

Lines changed: 2 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -4,7 +4,8 @@
44

55
### Changed
66

7-
- Use new data service and connection model (VSCODE-297, #377)
7+
- Use new data service and connection model (VSCODE-297, #377)
8+
- Use the connection-secrets module to protect all secrets (VSCODE-313). Addresses CVE-2021-32039 - Users with appropriate file access may be able to access unencrypted user credentials saved by MongoDB Extension for VS Code in a binary file. These credentials may be used by malicious attackers to perform unauthorized actions. This vulnerability affects all MongoDB Extension for VS Code including and prior to version 0.7.0.
89

910

1011
## [v0.7.0](https://github.com/mongodb-js/vscode/releases/tag/v0.7.0) - 2021-12-01

0 commit comments

Comments
 (0)