| id: GO-2026-5294 | |
| modules: | |
| - module: github.com/juev/nebula-mesh | |
| versions: | |
| - fixed: 0.3.2 | |
| vulnerable_at: 0.3.1 | |
| summary: |- | |
| nebula-mesh: Newly-minted operator API key exposed in redirect URL (Referer, | |
| history, proxy logs) in github.com/juev/nebula-mesh | |
| cves: | |
| - CVE-2026-47768 | |
| ghsas: | |
| - GHSA-9pg3-25fq-p6cc | |
| references: | |
| - advisory: https://github.com/juev/nebula-mesh/security/advisories/GHSA-9pg3-25fq-p6cc | |
| source: | |
| id: GHSA-9pg3-25fq-p6cc | |
| created: 2026-06-25T02:33:18.623792678-04:00 | |
| review_status: UNREVIEWED |