Versions in this module Expand all Collapse all v1 v1.8.5 Jan 12, 2026 v1.8.4 Dec 15, 2025 GO-2026-4311 GO-2026-4311: Fulcio is vulnerable to Server-Side Request Forgery (SSRF) via MetaIssuer Regex Bypass in github.com/sigstore/fulcio v1.8.3 Dec 4, 2025 GO-2026-4311 GO-2026-4311: Fulcio is vulnerable to Server-Side Request Forgery (SSRF) via MetaIssuer Regex Bypass in github.com/sigstore/fulcio v1.8.2 Nov 19, 2025 GO-2025-4193 +1 more GO-2025-4193: Fulcio allocates excessive memory during token parsing in github.com/sigstore/fulcio GO-2026-4311: Fulcio is vulnerable to Server-Side Request Forgery (SSRF) via MetaIssuer Regex Bypass in github.com/sigstore/fulcio v1.8.1 Nov 7, 2025 GO-2025-4193 +1 more GO-2025-4193: Fulcio allocates excessive memory during token parsing in github.com/sigstore/fulcio GO-2026-4311: Fulcio is vulnerable to Server-Side Request Forgery (SSRF) via MetaIssuer Regex Bypass in github.com/sigstore/fulcio v1.8.0 Nov 6, 2025 GO-2025-4193 +1 more GO-2025-4193: Fulcio allocates excessive memory during token parsing in github.com/sigstore/fulcio GO-2026-4311: Fulcio is vulnerable to Server-Side Request Forgery (SSRF) via MetaIssuer Regex Bypass in github.com/sigstore/fulcio v1.7.1 Apr 24, 2025 GO-2025-4193 +1 more GO-2025-4193: Fulcio allocates excessive memory during token parsing in github.com/sigstore/fulcio GO-2026-4311: Fulcio is vulnerable to Server-Side Request Forgery (SSRF) via MetaIssuer Regex Bypass in github.com/sigstore/fulcio v1.7.0 Apr 11, 2025 GO-2025-4193 +1 more GO-2025-4193: Fulcio allocates excessive memory during token parsing in github.com/sigstore/fulcio GO-2026-4311: Fulcio is vulnerable to Server-Side Request Forgery (SSRF) via MetaIssuer Regex Bypass in github.com/sigstore/fulcio v1.6.6 Jan 22, 2025 GO-2025-4193 +1 more GO-2025-4193: Fulcio allocates excessive memory during token parsing in github.com/sigstore/fulcio GO-2026-4311: Fulcio is vulnerable to Server-Side Request Forgery (SSRF) via MetaIssuer Regex Bypass in github.com/sigstore/fulcio v1.6.5 Oct 9, 2024 GO-2025-4193 +1 more GO-2025-4193: Fulcio allocates excessive memory during token parsing in github.com/sigstore/fulcio GO-2026-4311: Fulcio is vulnerable to Server-Side Request Forgery (SSRF) via MetaIssuer Regex Bypass in github.com/sigstore/fulcio v1.6.4 Sep 4, 2024 GO-2025-4193 +1 more GO-2025-4193: Fulcio allocates excessive memory during token parsing in github.com/sigstore/fulcio GO-2026-4311: Fulcio is vulnerable to Server-Side Request Forgery (SSRF) via MetaIssuer Regex Bypass in github.com/sigstore/fulcio v1.6.3 Aug 22, 2024 GO-2025-4193 +1 more GO-2025-4193: Fulcio allocates excessive memory during token parsing in github.com/sigstore/fulcio GO-2026-4311: Fulcio is vulnerable to Server-Side Request Forgery (SSRF) via MetaIssuer Regex Bypass in github.com/sigstore/fulcio v1.6.2 Aug 15, 2024 GO-2025-4193 +1 more GO-2025-4193: Fulcio allocates excessive memory during token parsing in github.com/sigstore/fulcio GO-2026-4311: Fulcio is vulnerable to Server-Side Request Forgery (SSRF) via MetaIssuer Regex Bypass in github.com/sigstore/fulcio v1.6.1 Aug 14, 2024 GO-2025-4193 +1 more GO-2025-4193: Fulcio allocates excessive memory during token parsing in github.com/sigstore/fulcio GO-2026-4311: Fulcio is vulnerable to Server-Side Request Forgery (SSRF) via MetaIssuer Regex Bypass in github.com/sigstore/fulcio v1.6.0 Aug 6, 2024 GO-2025-4193 +1 more GO-2025-4193: Fulcio allocates excessive memory during token parsing in github.com/sigstore/fulcio GO-2026-4311: Fulcio is vulnerable to Server-Side Request Forgery (SSRF) via MetaIssuer Regex Bypass in github.com/sigstore/fulcio v1.5.1 Jul 10, 2024 GO-2025-4193 +1 more GO-2025-4193: Fulcio allocates excessive memory during token parsing in github.com/sigstore/fulcio GO-2026-4311: Fulcio is vulnerable to Server-Side Request Forgery (SSRF) via MetaIssuer Regex Bypass in github.com/sigstore/fulcio v1.5.0 Jul 9, 2024 GO-2025-4193 +1 more GO-2025-4193: Fulcio allocates excessive memory during token parsing in github.com/sigstore/fulcio GO-2026-4311: Fulcio is vulnerable to Server-Side Request Forgery (SSRF) via MetaIssuer Regex Bypass in github.com/sigstore/fulcio v1.4.5 Apr 5, 2024 GO-2025-4193 +1 more GO-2025-4193: Fulcio allocates excessive memory during token parsing in github.com/sigstore/fulcio GO-2026-4311: Fulcio is vulnerable to Server-Side Request Forgery (SSRF) via MetaIssuer Regex Bypass in github.com/sigstore/fulcio v1.4.4 Feb 28, 2024 GO-2025-4193 +1 more GO-2025-4193: Fulcio allocates excessive memory during token parsing in github.com/sigstore/fulcio GO-2026-4311: Fulcio is vulnerable to Server-Side Request Forgery (SSRF) via MetaIssuer Regex Bypass in github.com/sigstore/fulcio v1.4.3 Oct 11, 2023 GO-2025-4193 +1 more GO-2025-4193: Fulcio allocates excessive memory during token parsing in github.com/sigstore/fulcio GO-2026-4311: Fulcio is vulnerable to Server-Side Request Forgery (SSRF) via MetaIssuer Regex Bypass in github.com/sigstore/fulcio v1.4.2 Oct 11, 2023 GO-2025-4193 +1 more GO-2025-4193: Fulcio allocates excessive memory during token parsing in github.com/sigstore/fulcio GO-2026-4311: Fulcio is vulnerable to Server-Side Request Forgery (SSRF) via MetaIssuer Regex Bypass in github.com/sigstore/fulcio v1.4.1 Oct 9, 2023 GO-2025-4193 +1 more GO-2025-4193: Fulcio allocates excessive memory during token parsing in github.com/sigstore/fulcio GO-2026-4311: Fulcio is vulnerable to Server-Side Request Forgery (SSRF) via MetaIssuer Regex Bypass in github.com/sigstore/fulcio v1.4.0 Jul 19, 2023 GO-2025-4193 +1 more GO-2025-4193: Fulcio allocates excessive memory during token parsing in github.com/sigstore/fulcio GO-2026-4311: Fulcio is vulnerable to Server-Side Request Forgery (SSRF) via MetaIssuer Regex Bypass in github.com/sigstore/fulcio v1.3.4 Jul 10, 2023 GO-2025-4193 +1 more GO-2025-4193: Fulcio allocates excessive memory during token parsing in github.com/sigstore/fulcio GO-2026-4311: Fulcio is vulnerable to Server-Side Request Forgery (SSRF) via MetaIssuer Regex Bypass in github.com/sigstore/fulcio v1.3.3 Jul 8, 2023 GO-2025-4193 +1 more GO-2025-4193: Fulcio allocates excessive memory during token parsing in github.com/sigstore/fulcio GO-2026-4311: Fulcio is vulnerable to Server-Side Request Forgery (SSRF) via MetaIssuer Regex Bypass in github.com/sigstore/fulcio v1.3.2 Jun 28, 2023 GO-2025-4193 +1 more GO-2025-4193: Fulcio allocates excessive memory during token parsing in github.com/sigstore/fulcio GO-2026-4311: Fulcio is vulnerable to Server-Side Request Forgery (SSRF) via MetaIssuer Regex Bypass in github.com/sigstore/fulcio v1.3.1 May 3, 2023 GO-2025-4193 +1 more GO-2025-4193: Fulcio allocates excessive memory during token parsing in github.com/sigstore/fulcio GO-2026-4311: Fulcio is vulnerable to Server-Side Request Forgery (SSRF) via MetaIssuer Regex Bypass in github.com/sigstore/fulcio v1.3.0 May 1, 2023 GO-2025-4193 +1 more GO-2025-4193: Fulcio allocates excessive memory during token parsing in github.com/sigstore/fulcio GO-2026-4311: Fulcio is vulnerable to Server-Side Request Forgery (SSRF) via MetaIssuer Regex Bypass in github.com/sigstore/fulcio Changes in this version + func Issuer(issuerURL string) identity.Issuer + func JobPrincipalFromIDToken(_ context.Context, token *oidc.IDToken) (identity.Principal, error)