Highlights
Information Disclosure: 2 prior fixes. Scrutinize any change in this area.
recipes/newrelic/infrastructure/agent-control: most-fixed (1 issue). Treat as high-risk during review.
0 high-severity fixes in this history; regressions here are high-impact.
Recurring patterns
The bug types that recur here, drawn from past fixes, not open vulnerabilities.
Information Disclosure: Deploy-time logging of sensitive setup variables can expose confidential organization identifiers or credentials in console logs and CI/CD outputs unless explicitly silenced.
Incorrect Privilege Assignment: Newly generated identity keys are vulnerable to unauthorized local read access if written to disk without restricting their file permissions (such as chmod 600) immediately upon generation.
Security Misconfiguration: Automated configurations that enable monitoring endpoints, like Apache server-status, risk exposing internal server metrics to external networks if they lack explicit local-only host restrictions.