sentry-actix is vulnerable to Exposure of Sensitive Information
21
Low Risk
Affected versions of this package may inadvertently expose sensitive information by failing to properly sanitize URLs captured during logging or tracing when using the Actix Web or Axum integrations. In particular, usernames and passwords embedded in these URLs could be logged in plain text, posing a security risk. The issue has been addressed in the patched version by ensuring that such sensitive credentials are consistently filtered out before logging.
You are affected if you are using a version which is within vulnerability ranges
sentry-actix is vulnerable to Exposure of Sensitive Information in versions 0.9.0 - 0.41.0.
Upgrade the sentry-actix library to a patch version.
Secure your code, cloud, and runtime environments in one central system. Find and fix vulnerabilities automatically.
No credit card required | Scan results in 32secs.
SOC 2Compliant
ISO 27001Compliant