Exposure of service tokens to webpack bundle
High
S
Semrush
Submitted None
Team Summary
Official summary from Semrush
During the build phase, not essential for the application's functionality environment variables were accidentally included in the webpack configuration file. This oversight led to their exposure in the final bundle. The subsequent internal review revealed no evidence of these tokens being used by unauthorized parties.
Actions:
Reported by
a_d_a_m
Report Details
Additional information and metadata
State
Closed
Substate
Resolved
Submitted
Weakness
Information Disclosure