Vendor
OpenTofu versions 1.8.0 through 1.8.2 fail to correctly restrict sensitive variables during static evaluation, leading to the potential exposure of sensitive information in module and backend configurations.