{"id":"GO-2026-5363","summary":"Istio: SSRF via RequestAuthentication jwksUri in istio.io/istio","details":"Istio: SSRF via RequestAuthentication jwksUri in istio.io/istio","aliases":["CVE-2026-41413","GHSA-fgw5-hp8f-xfhc"],"modified":"2026-06-28T22:29:42.173266510Z","published":"2026-06-25T18:43:19Z","related":["CGA-v92j-gcgg-6mw5"],"database_specific":{"review_status":"UNREVIEWED","url":"https://pkg.go.dev/vuln/GO-2026-5363"},"references":[{"type":"ADVISORY","url":"https://github.com/istio/istio/security/advisories/GHSA-fgw5-hp8f-xfhc"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-41413"},{"type":"WEB","url":"https://github.com/istio/istio/releases/tag/1.28.6"},{"type":"WEB","url":"https://github.com/istio/istio/releases/tag/1.29.2"}],"affected":[{"package":{"name":"istio.io/istio","ecosystem":"Go","purl":"pkg:golang/istio.io/istio"},"ranges":[{"type":"SEMVER","events":[{"introduced":"0"},{"fixed":"0.0.0-20260410004459-189832a289c1"}]}],"ecosystem_specific":{},"database_specific":{"source":"https://vuln.go.dev/ID/GO-2026-5363.json"}}],"schema_version":"1.7.5"}