Sentry is vulnerable to Exposure of Sensitive Information to an Unauthorized Actor
48
Medium Risk
Affected versions of this package disable Session Replay by default on iOS 26.0+ when built with Xcode 26.0 or later to prevent potential PII (Personally identifiable information) leaks. This mitigation addresses masking issues introduced by Apple’s new Liquid Glass rendering, which can expose sensitive user data during session recording. Developers can temporarily re-enable Session Replay using options.experimental.enableSessionReplayInUnreliableEnvironment = true, but doing so carries privacy risks.
You are affected if you are using a version that falls within the vulnerable range.
Sentry is vulnerable to Exposure of Sensitive Information to an Unauthorized Actor in versions 8.31.1 - 8.56.2.
Upgrade the Sentry library to the patch version.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

SOC 2Compliant
ISO 27001Compliant