According to Odaily Planet Daily, Phantom stated on the X platform that it was not affected by the @solana/web3.js vulnerability, and the security team confirmed that the compromised version was not used.
Anza core developer trent.sol pointed out that users of @solana/web3.js version 1.95.6 and 1.95.7 may face the risk of private key leakage and are advised to upgrade to 1.95.8.