No
Yes
30
If you are using SonarQube, it is better to check your system if any vulnerability exists.
There is a vulnerability in SonarQube version 8.4.2.36762 which allows attackers to get cleartext SMTP, SVN, and GitLab credentials.
You can eliminate the vulnerability with configuration for SMTP and SVN.