Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Bug: sensitive cache data is stored in global /tmp with read access for everyone #479

Closed
kloenk opened this issue Jul 25, 2024 · 1 comment · Fixed by #494
Closed

Bug: sensitive cache data is stored in global /tmp with read access for everyone #479

kloenk opened this issue Jul 25, 2024 · 1 comment · Fixed by #494
Labels
bug Something isn't working

Comments

@kloenk
Copy link

kloenk commented Jul 25, 2024

Is this urgent?

No

What parts are affected

Frontend

What is the server version

0.5.2

What is the client version

0.5.2

What platform are you using

Linux

What's the problem 🤔

The kitchenowl desktop client stores cache data in the global folder /tmp/kitchenowl. Accessible to everyone. This includes names of who is in a household and the spending limits.

Share your logs

No response

Share your configuration

No response

@kloenk kloenk added the bug Something isn't working label Jul 25, 2024
@TomBursch TomBursch moved this to Next Up in KitchenOwl Project Jul 25, 2024
@TomBursch
Copy link
Owner

I guess XDG_CACHE_HOME would be a better place.

@TomBursch TomBursch linked a pull request Aug 14, 2024 that will close this issue
@github-project-automation github-project-automation bot moved this from Next Up to Ready for Testing in KitchenOwl Project Aug 14, 2024
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
bug Something isn't working
Projects
Status: Testing
Development

Successfully merging a pull request may close this issue.

2 participants