@browserless.io/browserless is vulnerable to Insertion of Sensitive Information into Log File
20
Low Risk
Affected versions of the package may log sensitive data in plaintext by including token-like query parameters in URL logs. The patched version redacts or omits parameters from logged URLs to prevent credential leakage.
You are affected if you are using a version that falls within the vulnerable range.
@browserless.io/browserless is vulnerable to Insertion of Sensitive Information into Log File in versions 2.0.0 - 2.33.0.
Upgrade the @browserless.io/browserless library to the patch version.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

SOC 2Compliant
ISO 27001Compliant