@pulumi/okta is vulnerable to Information Disclosure
40
Medium Risk
Affected versions of @pulumi/okta do not mark sensitive keys as sensitive, which causes them to be exposed in Pulumi's state file (for example, when running pulumi preview --diff).
You are affected if you use a vulnerable version of @pulumi/okta.
@pulumi/okta is vulnerable to Information Disclosure in versions 1.0.0 - 4.9.0.
Upgrade @pulumi/okta to a patch version.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

SOC 2Compliant
ISO 27001Compliant