sentry-actix is vulnerable to Exposure of Sensitive Information
21
Low Risk
Affected versions of this package may inadvertently expose sensitive information by failing to properly sanitize URLs captured during logging or tracing when using the Actix Web or Axum integrations. In particular, usernames and passwords embedded in these URLs could be logged in plain text, posing a security risk. The issue has been addressed in the patched version by ensuring that such sensitive credentials are consistently filtered out before logging.
You are affected if you are using a version which is within vulnerability ranges
sentry-actix is vulnerable to Exposure of Sensitive Information in versions 0.9.0 - 0.41.0.
Upgrade the sentry-actix library to a patch version.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

SOC 2Compliant
ISO 27001Compliant