Vulnerabilities

ID
Packages
Summary
Published
arrow_upward
Attributes
GHSA-q6xx-5vr8-p898
  • Go/github.com/nezhahq/nezha
Nezha vulnerable to cross-tenant terminal/file-manager session hijack via WebSocket stream UUID without ownership check 26 Jun
  • Fix available
  • Severity - 9.9 (Critical)
CVE-2026-62283
  • github.com/nezhahq/nezha
Nezha Monitoring: Cross-tenant terminal/file-manager session hijack via WebSocket stream UUID without ownership check 21 Aug
  • Fix available
  • Severity - 9.9 (Critical)
GO-2026-5821
  • Go/github.com/nezhahq/nezha
Nezha vulnerable to cross-tenant terminal/file-manager session hijack via WebSocket stream UUID without ownership check in github.com/nezhahq/nezha 07 Jul
  • No fix available