AIKIDO-2024-10352

@effect/platform is vulnerable to Insertion of Sensitive Information into Log File

25

Low

@effect/platform js

AIKIDO-2024-10352: @effect/platform is vulnerable to Insertion of Sensitive Information into Log File in versions 0.0.0 - 0.68.6.

Insertion of Sensitive Information into Log File
Vuln in 0.0.0 - 0.68.6
Fixed in 0.69.0
No CVE available
TL;DR

Affected versions of the package are vulnerable to insertion of sensitive information into the log files.

Who does this affect?

You're affected if you are using a version which is within vulnerability ranges.

How can it be fixed?

Upgrade @effect/platform library to patch version.

Background info

Link to vendor website

Logo
© 2024 Aikido Security BV | BE0792914919
🇪🇺 Grauwpoort 1, 9000 Ghent, Belgium
🇺🇸 95 Third St, 2nd Fl, San Francisco, CA 94103, US