solana-agent-kit is vulnerable to Insertion of Sensitive Information into Log File
15
Low Risk
Affected versions of this package may expose sensitive information in log files by logging the private key when the agent's keypair is loaded.
You are affected if you are using a vulnerable version of the package.
solana-agent-kit is vulnerable to Insertion of Sensitive Information into Log File in versions 1.3.6 - 1.4.4.
Upgrade solana-agent-kit to a patch version.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

SOC 2Compliant
ISO 27001Compliant