Arcane Backend: Missing admin authorization on git repository endpoints allows non-admin users to exfiltrate stored Git credentials and tamper with GitOps configs in github.com/getarcaneapp/arcane/backend
{
"url": "https://pkg.go.dev/vuln/GO-2026-5220",
"review_status": "UNREVIEWED"
}