Subdomain checking of whitelisted domains could allow unintended redirects in oauth2-proxy in github.com/oauth2-proxy/oauth2-proxy
{ "review_status": "UNREVIEWED", "url": "https://pkg.go.dev/vuln/GO-2022-0790" }