Non-recursive certificate listing bypasses per-object authorization and leaks all fingerprints in github.com/canonical/lxd
{ "review_status": "REVIEWED", "url": "https://pkg.go.dev/vuln/GO-2026-4595" }
{ "custom_ranges": [ { "events": [ { "introduced": "6.6" }, { "fixed": "6.7" } ], "type": "ECOSYSTEM" } ] }
"https://vuln.go.dev/ID/GO-2026-4595.json"