Node.js Tech Stack
Dec 23, 2025 · Information Security
Critical Storybook Flaw May Leak API Keys and Database Passwords
Storybook versions 7.0+ can unintentionally bundle the entire .env file into static builds when using process.env patterns, exposing API keys and database passwords to anyone accessing the published site; the advisory lists affected versions, plugin triggers, and recommends immediate upgrade to patched releases and key rotation.
Env VariablesFrontend DevelopmentPatch
0 likes · 6 min read
