Use of Hard-coded, Security-relevant Constants in GitHub repository deepset-ai/haystack prior to 0.1.30.
The product uses hard-coded constants instead of symbolic names for security-critical values, which increases the likelihood of mistakes during code maintenance or security policy change.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Haystack | Deepset | * | 2023-03-29 (excluding) |