According to Odaily, Phantom has announced that it remains unaffected by the recent vulnerability found in the @solana/web3.js library. In a statement on X, Phantom assured users that their security team has verified they have never utilized the compromised versions of @solana/web3.js.
Earlier today, Anza's core developer, trent.sol, who is responsible for managing congestion on the Solana network, issued a warning on X. He stated that users of @solana/web3.js versions 1.95.6 and 1.95.7 are at risk of attacks from secret stealers that could potentially leak private keys. Users and products currently operating on these versions are advised to upgrade to version 1.95.8 to ensure security. It is important to note that version 1.95.5 is not affected by this vulnerability.