{"id":"GO-2026-5413","summary":"ots has a negative expire override that can bypass its secret retention policy in github.com/Luzifer/ots","details":"ots has a negative expire override that can bypass its secret retention policy in github.com/Luzifer/ots","aliases":["GHSA-h5fq-653g-gxrm"],"modified":"2026-06-25T23:00:16.329686673Z","published":"2026-06-25T22:34:31Z","database_specific":{"review_status":"UNREVIEWED","url":"https://pkg.go.dev/vuln/GO-2026-5413"},"references":[{"type":"ADVISORY","url":"https://github.com/Luzifer/ots/security/advisories/GHSA-h5fq-653g-gxrm"},{"type":"FIX","url":"https://github.com/Luzifer/ots/commit/3511bd18a2bec75bd9c6b4d513f2a90ccf4209b7"},{"type":"WEB","url":"https://github.com/Luzifer/ots/releases/tag/v1.21.5"}],"affected":[{"package":{"name":"github.com/Luzifer/ots","ecosystem":"Go","purl":"pkg:golang/github.com/Luzifer/ots"},"ranges":[{"type":"SEMVER","events":[{"introduced":"0"},{"fixed":"1.21.5"}]}],"ecosystem_specific":{},"database_specific":{"source":"https://vuln.go.dev/ID/GO-2026-5413.json"}}],"schema_version":"1.7.5"}