sentry-sdk vulnerabilities
CVEs whose affected-version data names the sentry-sdk package (pip). Each record lists the affected and patched versions; check a specific version with the dependency checker or POST /api/sbom.
2 CVEsRSS
CVE-2024-40647Low· 2.5Sentry's Python SDK unintentionally exposes environment variables to subprocesses
Sentry's Python SDK unintentionally exposes environment variables to subprocesses
▾ Sunlitsentry-sdk · sentry-sdkEPSS 0.20%via OSV
CVE-2023-28117High· 7.6Sentry SDK leaks sensitive session information when `sendDefaultPII` is set to `True`
Sentry SDK leaks sensitive session information when `sendDefaultPII` is set to `True`
▾ Twilightsentry-sdk · sentry-sdkEPSS 0.65%via OSV