Use of Hard-coded, Security-relevant Constants in GitHub repository deepset-ai/haystack prior to 0.1.30.
The product uses hard-coded constants instead of symbolic names for security-critical values, which increases the likelihood of mistakes during code maintenance or security policy change.
| Name | Vendor | Start Version | End Version |
|---|---|---|---|
| Haystack | Deepset | * | 2023-03-29 (excluding) |