1.6 Verify That 'MYSQL_PWD' Is Not Set In Users' Profiles - .bashrc
MySQL can read a default database password from an environment variable called MYSQL_PWD. Rationale: The use of the MYSQL_PWD environment variable implies the clear text storage of MySQL credentials. Avoiding this may increase assurance that the confidentiality of MySQL credentials is preserved.
Check which users and/or scripts are setting MYSQL_PWD and change them to use a more secure method. Default Value: Not set.