openhands-sdk is vulnerable to Exposure of Sensitive Information
81
High Risk
The SDK writes LLM provider credentials and OpenRouter identifiers into the process-wide environment during LLM initialization. In a multi-tenant agent server, one conversation's credentials can become visible to other conversations in the same process and the most recently initialized LLM can overwrite earlier values. This can expose secrets or cause requests to use another tenant's credentials. The fix removes the environment writes and passes credentials through per-request keyword arguments and headers.
You are affected if you are using a version that falls within the vulnerable range.
openhands-sdk is vulnerable to Exposure of Sensitive Information in versions 1.1.0 - 1.22.0.
Upgrade the openhands-sdk library to the patch version.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

SOC 2Compliant
ISO 27001Compliant