Impact
aegir publish
and aegir build
may leak secrets from environmental variables in the browser bundle published to npm.
Patches
The code has been patched, users should upgrade to >=21.10.1
Workarounds
Run printenv
to check your environment variables and revoke any secrets.
For more information
If you have any questions or comments about this advisory:
Impact
aegir publish
andaegir build
may leak secrets from environmental variables in the browser bundle published to npm.Patches
The code has been patched, users should upgrade to >=21.10.1
Workarounds
Run
printenv
to check your environment variables and revoke any secrets.For more information
If you have any questions or comments about this advisory: