From f6e5f19186fb67dc059d6268051a948aea0db2a5 Mon Sep 17 00:00:00 2001 From: TobieTom Date: Fri, 19 Dec 2025 02:30:38 +0100 Subject: [PATCH] Security Fix: Removed sensitive private key logging in error path (CWE-532) --- frontend/src/solanaRPC.ts | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/frontend/src/solanaRPC.ts b/frontend/src/solanaRPC.ts index 4d881e63..8b2f9285 100644 --- a/frontend/src/solanaRPC.ts +++ b/frontend/src/solanaRPC.ts @@ -480,7 +480,7 @@ export default class SolanaRpc { const privateKeyArray = Uint8Array.from(Buffer.from(privateKey, "hex")); if (privateKeyArray.length !== 64) { - console.log("privatekey", privateKey); + // Security Fix: Removed private key logging. throw new Error("Invalid private key length"); } const senderKeypair = Keypair.fromSecretKey(privateKeyArray);