<!-- 
RSS generated by JIRA (9.7.1#970001-sha1:2222b88b221c4928ef0de3161136cc90c8356a66) at Wed Feb 07 22:42:16 UTC 2024

It is possible to restrict the fields that are returned in this document by specifying the 'field' parameter in your request.
For example, to request only the issue key and summary append 'field=key&field=summary' to the URL of your request.
-->
<rss version="0.92" >
<channel>
    <title>MongoDB Jira</title>
    <link>https://jira.mongodb.org</link>
    <description>This file is an XML representation of an issue</description>
    <language>en-us</language>    <build-info>
        <version>9.7.1</version>
        <build-number>970001</build-number>
        <build-date>13-04-2023</build-date>
    </build-info>


<item>
            <title>[COMPASS-6197] Password is not escaped in the connection string when there is no username provided</title>
                <link>https://jira.mongodb.org/browse/COMPASS-6197</link>
                <project id="13182" key="COMPASS">Compass </project>
                    <description>&lt;h3&gt;&lt;a name=&quot;ProblemStatement%2FRationale&quot;&gt;&lt;/a&gt;&lt;b&gt;Problem Statement/Rationale&lt;/b&gt;&lt;/h3&gt;
&lt;p&gt;When entering user password through advanced option, password is not escaped if there is no username&lt;/p&gt;

&lt;p&gt; &lt;span class=&quot;image-wrap&quot; style=&quot;&quot;&gt;&lt;a id=&quot;408037_thumb&quot; href=&quot;https://jira.mongodb.org/secure/attachment/408037/408037_image-2022-10-13-12-40-59-871.png&quot; title=&quot;image-2022-10-13-12-40-59-871.png&quot; file-preview-type=&quot;image&quot; file-preview-id=&quot;408037&quot; file-preview-title=&quot;image-2022-10-13-12-40-59-871.png&quot;&gt;&lt;img src=&quot;https://jira.mongodb.org/secure/thumbnail/408037/_thumb_408037.png&quot; style=&quot;border: 0px solid black&quot; role=&quot;presentation&quot;/&gt;&lt;/a&gt;&lt;/span&gt; &lt;/p&gt;

&lt;h3&gt;&lt;a name=&quot;StepstoReproduce&quot;&gt;&lt;/a&gt;&lt;b&gt;Steps to Reproduce&lt;/b&gt;&lt;/h3&gt;

&lt;ul class=&quot;alternate&quot; type=&quot;square&quot;&gt;
	&lt;li&gt;Create new connection in Compass&lt;/li&gt;
	&lt;li&gt;Disable URL editing&lt;/li&gt;
	&lt;li&gt;Start editing password in the advanced options section&lt;/li&gt;
&lt;/ul&gt;


&lt;h3&gt;&lt;a name=&quot;ExpectedResults&quot;&gt;&lt;/a&gt;&lt;b&gt;Expected Results&lt;/b&gt;&lt;/h3&gt;
&lt;p&gt;Password is hidden in the url&lt;/p&gt;

&lt;h3&gt;&lt;a name=&quot;ActualResults&quot;&gt;&lt;/a&gt;&lt;b&gt;Actual Results&lt;/b&gt;&lt;/h3&gt;
&lt;p&gt;You can see password in the url&lt;/p&gt;

</description>
                <environment></environment>
        <key id="2158285">COMPASS-6197</key>
            <summary>Password is not escaped in the connection string when there is no username provided</summary>
                <type id="1" iconUrl="https://jira.mongodb.org/secure/viewavatar?size=xsmall&amp;avatarId=14703&amp;avatarType=issuetype">Bug</type>
                                            <priority id="2" iconUrl="https://jira.mongodb.org/images/icons/priorities/critical.svg">Critical - P2</priority>
                        <status id="6" iconUrl="https://jira.mongodb.org/images/icons/statuses/closed.png" description="The issue is considered finished, the resolution is correct. Issues which are closed can be reopened.">Closed</status>
                    <statusCategory id="3" key="done" colorName="success"/>
                                    <resolution id="9">Done</resolution>
                                        <assignee username="sergey.petushkov@mongodb.com">Sergey Petushkov</assignee>
                                    <reporter username="sergey.petushkov@mongodb.com">Sergey Petushkov</reporter>
                        <labels>
                    </labels>
                <created>Thu, 13 Oct 2022 10:42:11 +0000</created>
                <updated>Fri, 2 Dec 2022 22:18:28 +0000</updated>
                            <resolved>Wed, 30 Nov 2022 09:45:45 +0000</resolved>
                                                    <fixVersion>1.35.0</fixVersion>
                                    <component>Connectivity</component>
                    <component>Security</component>
                        <due></due>
                            <votes>0</votes>
                                    <watches>2</watches>
                                                                                                                <comments>
                            <comment id="5026652" author="xgen-internal-githook" created="Fri, 2 Dec 2022 22:18:28 +0000"  >&lt;p&gt;Author:&lt;/p&gt;
{&apos;name&apos;: &apos;Sergey Petushkov&apos;, &apos;email&apos;: &apos;petushkov.sergey@gmail.com&apos;, &apos;username&apos;: &apos;gribnoysup&apos;}
&lt;p&gt;Message: chore: update mongodb string package &lt;a href=&quot;https://jira.mongodb.org/browse/COMPASS-6197&quot; title=&quot;Password is not escaped in the connection string when there is no username provided&quot; class=&quot;issue-link&quot; data-issue-key=&quot;COMPASS-6197&quot;&gt;&lt;del&gt;COMPASS-6197&lt;/del&gt;&lt;/a&gt; (#3835)&lt;/p&gt;

&lt;ul&gt;
	&lt;li&gt;chore: update mongodb string package&lt;/li&gt;
&lt;/ul&gt;


&lt;ul&gt;
	&lt;li&gt;chore: remove leftover code&lt;br/&gt;
Branch: revert-3723-revert-3709-compass-6170-remove-pipeline-from-text&lt;br/&gt;
&lt;a href=&quot;https://github.com/mongodb-js/compass/commit/92d0020f1616b24273dd45bcadc1f36b47a690d7&quot; class=&quot;external-link&quot; target=&quot;_blank&quot; rel=&quot;nofollow noopener&quot;&gt;https://github.com/mongodb-js/compass/commit/92d0020f1616b24273dd45bcadc1f36b47a690d7&lt;/a&gt;&lt;/li&gt;
&lt;/ul&gt;
</comment>
                            <comment id="5023065" author="xgen-internal-githook" created="Thu, 1 Dec 2022 18:11:37 +0000"  >&lt;p&gt;Author:&lt;/p&gt;
{&apos;name&apos;: &apos;Sergey Petushkov&apos;, &apos;email&apos;: &apos;petushkov.sergey@gmail.com&apos;, &apos;username&apos;: &apos;gribnoysup&apos;}
&lt;p&gt;Message: chore: update mongodb string package &lt;a href=&quot;https://jira.mongodb.org/browse/COMPASS-6197&quot; title=&quot;Password is not escaped in the connection string when there is no username provided&quot; class=&quot;issue-link&quot; data-issue-key=&quot;COMPASS-6197&quot;&gt;&lt;del&gt;COMPASS-6197&lt;/del&gt;&lt;/a&gt; (#3835)&lt;/p&gt;

&lt;ul&gt;
	&lt;li&gt;chore: update mongodb string package&lt;/li&gt;
&lt;/ul&gt;


&lt;ul&gt;
	&lt;li&gt;chore: remove leftover code&lt;br/&gt;
Branch: update-compass-shell-to-shared-config&lt;br/&gt;
&lt;a href=&quot;https://github.com/mongodb-js/compass/commit/92d0020f1616b24273dd45bcadc1f36b47a690d7&quot; class=&quot;external-link&quot; target=&quot;_blank&quot; rel=&quot;nofollow noopener&quot;&gt;https://github.com/mongodb-js/compass/commit/92d0020f1616b24273dd45bcadc1f36b47a690d7&lt;/a&gt;&lt;/li&gt;
&lt;/ul&gt;
</comment>
                            <comment id="5020642" author="xgen-internal-githook" created="Wed, 30 Nov 2022 23:20:03 +0000"  >&lt;p&gt;Author:&lt;/p&gt;
{&apos;name&apos;: &apos;Sergey Petushkov&apos;, &apos;email&apos;: &apos;petushkov.sergey@gmail.com&apos;, &apos;username&apos;: &apos;gribnoysup&apos;}
&lt;p&gt;Message: chore: update mongodb string package &lt;a href=&quot;https://jira.mongodb.org/browse/COMPASS-6197&quot; title=&quot;Password is not escaped in the connection string when there is no username provided&quot; class=&quot;issue-link&quot; data-issue-key=&quot;COMPASS-6197&quot;&gt;&lt;del&gt;COMPASS-6197&lt;/del&gt;&lt;/a&gt; (#3835)&lt;/p&gt;

&lt;ul&gt;
	&lt;li&gt;chore: update mongodb string package&lt;/li&gt;
&lt;/ul&gt;


&lt;ul&gt;
	&lt;li&gt;chore: remove leftover code&lt;br/&gt;
Branch: update-lg-again&lt;br/&gt;
&lt;a href=&quot;https://github.com/mongodb-js/compass/commit/92d0020f1616b24273dd45bcadc1f36b47a690d7&quot; class=&quot;external-link&quot; target=&quot;_blank&quot; rel=&quot;nofollow noopener&quot;&gt;https://github.com/mongodb-js/compass/commit/92d0020f1616b24273dd45bcadc1f36b47a690d7&lt;/a&gt;&lt;/li&gt;
&lt;/ul&gt;
</comment>
                            <comment id="5019087" author="xgen-internal-githook" created="Wed, 30 Nov 2022 15:56:33 +0000"  >&lt;p&gt;Author:&lt;/p&gt;
{&apos;name&apos;: &apos;Sergey Petushkov&apos;, &apos;email&apos;: &apos;petushkov.sergey@gmail.com&apos;, &apos;username&apos;: &apos;gribnoysup&apos;}
&lt;p&gt;Message: chore: update mongodb string package &lt;a href=&quot;https://jira.mongodb.org/browse/COMPASS-6197&quot; title=&quot;Password is not escaped in the connection string when there is no username provided&quot; class=&quot;issue-link&quot; data-issue-key=&quot;COMPASS-6197&quot;&gt;&lt;del&gt;COMPASS-6197&lt;/del&gt;&lt;/a&gt; (#3835)&lt;/p&gt;

&lt;ul&gt;
	&lt;li&gt;chore: update mongodb string package&lt;/li&gt;
&lt;/ul&gt;


&lt;ul&gt;
	&lt;li&gt;chore: remove leftover code&lt;br/&gt;
Branch: &lt;a href=&quot;https://jira.mongodb.org/browse/COMPASS-6325&quot; title=&quot;Fix the settings dialog&#8217;s height and adjust categories&quot; class=&quot;issue-link&quot; data-issue-key=&quot;COMPASS-6325&quot;&gt;&lt;del&gt;COMPASS-6325&lt;/del&gt;&lt;/a&gt;-fix-settings-modal-height-and-categories&lt;br/&gt;
&lt;a href=&quot;https://github.com/mongodb-js/compass/commit/92d0020f1616b24273dd45bcadc1f36b47a690d7&quot; class=&quot;external-link&quot; target=&quot;_blank&quot; rel=&quot;nofollow noopener&quot;&gt;https://github.com/mongodb-js/compass/commit/92d0020f1616b24273dd45bcadc1f36b47a690d7&lt;/a&gt;&lt;/li&gt;
&lt;/ul&gt;
</comment>
                            <comment id="5017277" author="xgen-internal-githook" created="Wed, 30 Nov 2022 00:36:00 +0000"  >&lt;p&gt;Author:&lt;/p&gt;
{&apos;name&apos;: &apos;Sergey Petushkov&apos;, &apos;email&apos;: &apos;petushkov.sergey@gmail.com&apos;, &apos;username&apos;: &apos;gribnoysup&apos;}
&lt;p&gt;Message: chore: update mongodb string package &lt;a href=&quot;https://jira.mongodb.org/browse/COMPASS-6197&quot; title=&quot;Password is not escaped in the connection string when there is no username provided&quot; class=&quot;issue-link&quot; data-issue-key=&quot;COMPASS-6197&quot;&gt;&lt;del&gt;COMPASS-6197&lt;/del&gt;&lt;/a&gt; (#3835)&lt;/p&gt;

&lt;ul&gt;
	&lt;li&gt;chore: update mongodb string package&lt;/li&gt;
&lt;/ul&gt;


&lt;ul&gt;
	&lt;li&gt;chore: remove leftover code&lt;br/&gt;
Branch: add-script-for-generating-readme-package-descriptions&lt;br/&gt;
&lt;a href=&quot;https://github.com/mongodb-js/compass/commit/92d0020f1616b24273dd45bcadc1f36b47a690d7&quot; class=&quot;external-link&quot; target=&quot;_blank&quot; rel=&quot;nofollow noopener&quot;&gt;https://github.com/mongodb-js/compass/commit/92d0020f1616b24273dd45bcadc1f36b47a690d7&lt;/a&gt;&lt;/li&gt;
&lt;/ul&gt;
</comment>
                            <comment id="5012695" author="xgen-internal-githook" created="Mon, 28 Nov 2022 19:54:12 +0000"  >&lt;p&gt;Author:&lt;/p&gt;
{&apos;name&apos;: &apos;Sergey Petushkov&apos;, &apos;email&apos;: &apos;petushkov.sergey@gmail.com&apos;, &apos;username&apos;: &apos;gribnoysup&apos;}
&lt;p&gt;Message: chore: update mongodb string package &lt;a href=&quot;https://jira.mongodb.org/browse/COMPASS-6197&quot; title=&quot;Password is not escaped in the connection string when there is no username provided&quot; class=&quot;issue-link&quot; data-issue-key=&quot;COMPASS-6197&quot;&gt;&lt;del&gt;COMPASS-6197&lt;/del&gt;&lt;/a&gt; (#3835)&lt;/p&gt;

&lt;ul&gt;
	&lt;li&gt;chore: update mongodb string package&lt;/li&gt;
&lt;/ul&gt;


&lt;ul&gt;
	&lt;li&gt;chore: remove leftover code&lt;br/&gt;
Branch: no-duplicate-stages&lt;br/&gt;
&lt;a href=&quot;https://github.com/mongodb-js/compass/commit/92d0020f1616b24273dd45bcadc1f36b47a690d7&quot; class=&quot;external-link&quot; target=&quot;_blank&quot; rel=&quot;nofollow noopener&quot;&gt;https://github.com/mongodb-js/compass/commit/92d0020f1616b24273dd45bcadc1f36b47a690d7&lt;/a&gt;&lt;/li&gt;
&lt;/ul&gt;
</comment>
                            <comment id="5012247" author="xgen-internal-githook" created="Mon, 28 Nov 2022 17:49:39 +0000"  >&lt;p&gt;Author:&lt;/p&gt;
{&apos;name&apos;: &apos;Sergey Petushkov&apos;, &apos;email&apos;: &apos;petushkov.sergey@gmail.com&apos;, &apos;username&apos;: &apos;gribnoysup&apos;}
&lt;p&gt;Message: chore: update mongodb string package &lt;a href=&quot;https://jira.mongodb.org/browse/COMPASS-6197&quot; title=&quot;Password is not escaped in the connection string when there is no username provided&quot; class=&quot;issue-link&quot; data-issue-key=&quot;COMPASS-6197&quot;&gt;&lt;del&gt;COMPASS-6197&lt;/del&gt;&lt;/a&gt; (#3835)&lt;/p&gt;

&lt;ul&gt;
	&lt;li&gt;chore: update mongodb string package&lt;/li&gt;
&lt;/ul&gt;


&lt;ul&gt;
	&lt;li&gt;chore: remove leftover code&lt;br/&gt;
Branch: update-react-tooltip-usage-to-lg&lt;br/&gt;
&lt;a href=&quot;https://github.com/mongodb-js/compass/commit/92d0020f1616b24273dd45bcadc1f36b47a690d7&quot; class=&quot;external-link&quot; target=&quot;_blank&quot; rel=&quot;nofollow noopener&quot;&gt;https://github.com/mongodb-js/compass/commit/92d0020f1616b24273dd45bcadc1f36b47a690d7&lt;/a&gt;&lt;/li&gt;
&lt;/ul&gt;
</comment>
                            <comment id="5011800" author="xgen-internal-githook" created="Mon, 28 Nov 2022 16:12:04 +0000"  >&lt;p&gt;Author:&lt;/p&gt;
{&apos;name&apos;: &apos;Sergey Petushkov&apos;, &apos;email&apos;: &apos;petushkov.sergey@gmail.com&apos;, &apos;username&apos;: &apos;gribnoysup&apos;}
&lt;p&gt;Message: chore: update mongodb string package &lt;a href=&quot;https://jira.mongodb.org/browse/COMPASS-6197&quot; title=&quot;Password is not escaped in the connection string when there is no username provided&quot; class=&quot;issue-link&quot; data-issue-key=&quot;COMPASS-6197&quot;&gt;&lt;del&gt;COMPASS-6197&lt;/del&gt;&lt;/a&gt; (#3835)&lt;/p&gt;

&lt;ul&gt;
	&lt;li&gt;chore: update mongodb string package&lt;/li&gt;
&lt;/ul&gt;


&lt;ul&gt;
	&lt;li&gt;chore: remove leftover code&lt;br/&gt;
Branch: main&lt;br/&gt;
&lt;a href=&quot;https://github.com/mongodb-js/compass/commit/92d0020f1616b24273dd45bcadc1f36b47a690d7&quot; class=&quot;external-link&quot; target=&quot;_blank&quot; rel=&quot;nofollow noopener&quot;&gt;https://github.com/mongodb-js/compass/commit/92d0020f1616b24273dd45bcadc1f36b47a690d7&lt;/a&gt;&lt;/li&gt;
&lt;/ul&gt;
</comment>
                    </comments>
                    <attachments>
                            <attachment id="408037" name="image-2022-10-13-12-40-59-871.png" size="42766" author="sergey.petushkov@mongodb.com" created="Thu, 13 Oct 2022 10:41:00 +0000"/>
                    </attachments>
                <subtasks>
                    </subtasks>
                <customfields>
                                                <customfield id="customfield_10050" key="com.atlassian.jira.toolkit:comments">
                        <customfieldname># Replies</customfieldname>
                        <customfieldvalues>
                            <customfieldvalue>8.0</customfieldvalue>
                        </customfieldvalues>
                    </customfield>
                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                            <customfield id="customfield_10055" key="com.atlassian.jira.ext.charting:firstresponsedate">
                        <customfieldname>Date of 1st Reply</customfieldname>
                        <customfieldvalues>
                            <customfieldvalue>Mon, 28 Nov 2022 16:12:04 +0000</customfieldvalue>

                        </customfieldvalues>
                    </customfield>
                                                                <customfield id="customfield_10052" key="com.atlassian.jira.toolkit:dayslastcommented">
                        <customfieldname>Days since reply</customfieldname>
                        <customfieldvalues>
                                        1 year, 9 weeks, 5 days ago
    
                        </customfieldvalues>
                    </customfield>
                                                                <customfield id="customfield_18254" key="com.onresolve.jira.groovy.groovyrunner:scripted-field">
                        <customfieldname>Dependencies</customfieldname>
                        <customfieldvalues>
                            <customfieldvalue><![CDATA[]]></customfieldvalue>


                        </customfieldvalues>
                    </customfield>
                                                                <customfield id="customfield_15850" key="com.atlassian.jira.plugins.jira-development-integration-plugin:devsummary">
                        <customfieldname>Development</customfieldname>
                        <customfieldvalues>
                            
                        </customfieldvalues>
                    </customfield>
                                                                                            <customfield id="customfield_10257" key="com.atlassian.jira.plugin.system.customfieldtypes:radiobuttons">
                        <customfieldname>Documentation Changes</customfieldname>
                        <customfieldvalues>
                                <customfieldvalue key="11861"><![CDATA[Not Needed]]></customfieldvalue>

                        </customfieldvalues>
                    </customfield>
                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                            <customfield id="customfield_10057" key="com.atlassian.jira.toolkit:lastusercommented">
                        <customfieldname>Last comment by Customer</customfieldname>
                        <customfieldvalues>
                            <customfieldvalue>true</customfieldvalue>
                        </customfieldvalues>
                    </customfield>
                                                                <customfield id="customfield_10056" key="com.atlassian.jira.toolkit:lastupdaterorcommenter">
                        <customfieldname>Last commenter</customfieldname>
                        <customfieldvalues>
                            <customfieldvalue>xgen-internal-githook</customfieldvalue>

                        </customfieldvalues>
                    </customfield>
                                                                <customfield id="customfield_11151" key="com.atlassian.jira.toolkit:LastCommentDate">
                        <customfieldname>Last public comment date</customfieldname>
                        <customfieldvalues>
                            1 year, 9 weeks, 5 days ago
                        </customfieldvalues>
                    </customfield>
                                                                                                                                                                                                                                        <customfield id="customfield_10051" key="com.atlassian.jira.toolkit:participants">
                        <customfieldname>Participants</customfieldname>
                        <customfieldvalues>
                                        <customfieldvalue>xgen-internal-githook</customfieldvalue>
            <customfieldvalue>sergey.petushkov@mongodb.com</customfieldvalue>
    
                        </customfieldvalues>
                    </customfield>
                                                                                                                                                                                                                                        <customfield id="customfield_14254" key="com.pyxis.greenhopper.jira:gh-lexo-rank">
                        <customfieldname>Product Rank</customfieldname>
                        <customfieldvalues>
                            <customfieldvalue>1|i1dxjb:</customfieldvalue>

                        </customfieldvalues>
                    </customfield>
                                                                                                                                                                                <customfield id="customfield_12550" key="com.pyxis.greenhopper.jira:gh-lexo-rank">
                        <customfieldname>Rank</customfieldname>
                        <customfieldvalues>
                            <customfieldvalue>2|hr1ldp:qyzzzy</customfieldvalue>

                        </customfieldvalues>
                    </customfield>
                                                                <customfield id="customfield_10558" key="com.pyxis.greenhopper.jira:gh-global-rank">
                        <customfieldname>Rank (Obsolete)</customfieldname>
                        <customfieldvalues>
                            <customfieldvalue>9223372036854775807</customfieldvalue>
                        </customfieldvalues>
                    </customfield>
                                                                                                                                                                                                                                        <customfield id="customfield_10557" key="com.pyxis.greenhopper.jira:gh-sprint">
                        <customfieldname>Sprint</customfieldname>
                        <customfieldvalues>
                                <customfieldvalue id="6714">Iteration Porpoise</customfieldvalue>

                        </customfieldvalues>
                    </customfield>
                                                                                                                        <customfield id="customfield_10555" key="com.atlassian.jira.plugin.system.customfieldtypes:float">
                        <customfieldname>Story Points</customfieldname>
                        <customfieldvalues>
                            <customfieldvalue>2.0</customfieldvalue>
                        </customfieldvalues>
                    </customfield>
                                                                                                                                                                                <customfield id="customfield_10053" key="com.atlassian.jira.ext.charting:timeinstatus">
                        <customfieldname>Time In Status</customfieldname>
                        <customfieldvalues>
                            
                        </customfieldvalues>
                    </customfield>
                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                            <customfield id="customfield_14350" key="com.pyxis.greenhopper.jira:gh-lexo-rank">
                        <customfieldname>serverRank</customfieldname>
                        <customfieldvalues>
                            <customfieldvalue>1|i1djon:</customfieldvalue>

                        </customfieldvalues>
                    </customfield>
                                    </customfields>
    </item>
</channel>
</rss>