-
-
Notifications
You must be signed in to change notification settings - Fork 539
Closed
Labels
enhancementEnhances an existing featureEnhances an existing featuresecurityVulnerability that hackers can use to do damage to systems or dataVulnerability that hackers can use to do damage to systems or data
Milestone
Description
Description
When checking for updates or attempt to download a new build from update dialog, HeidiSQL calls the URLs with the unsafe http protocol (http://www.heidisql.com/...).
All URLs should be prefixed with https.
HeidiSQL version
12.10.0.7000
Database server version
Reproduction recipe
- open HeidiSQL
- Click "More" and "Check for updates"
Error/Backtrace
Metadata
Metadata
Assignees
Labels
enhancementEnhances an existing featureEnhances an existing featuresecurityVulnerability that hackers can use to do damage to systems or dataVulnerability that hackers can use to do damage to systems or data