SWIG file names containing 'cgo' and well-crafted...
High severity
Unreviewed
Published
Apr 8, 2026
to the GitHub Advisory Database
•
Updated Apr 16, 2026
Description
Published by the National Vulnerability Database
Apr 8, 2026
Published to the GitHub Advisory Database
Apr 8, 2026
Last updated
Apr 16, 2026
SWIG file names containing 'cgo' and well-crafted payloads could lead to code smuggling and arbitrary code execution at build time due to trust layer bypass.
References