Property
Languagejavascript
Severitylow
CWECWE-319: Cleartext Transmission of Sensitive Information
OWASPA03:2017 - Sensitive Data Exposure
Confidence LevelLow
Impact LevelLow
Likelihood LevelLow

Description#

The code configures the database connection to use outdated TLS versions (1.0 or 1.1), which are no longer considered secure. This weakens the encryption used for data sent between your app and the database.

Impact#

Using deprecated TLS versions makes it easier for attackers to intercept or tamper with sensitive data, potentially exposing user information or credentials. This can lead to data breaches, compliance violations, and undermine the security of your application.