Affected by GO-2026-4863
and 3 other vulnerabilities
GO-2026-4863: Contrast BadAML injection allows arbitrary code execution in github.com/edgelesssys/contrast
GO-2026-5624: Contras Affected by CopyFile Policy Subversion via Symlinks in github.com/edgelesssys/contrast
GO-2026-5864: Constrata's coordinator transit engine `ciphertextContainer.UnmarshalJSON` panics on attacker-controlled short ciphertexts in github.com/edgelesssys/contrast
GO-2026-5865: Contrast's Imagepuller registryFor uses unanchored suffix matching, leaking auth credentials and trusted CA configuration to sibling-domain registries in github.com/edgelesssys/contrast