THREATOPS
THREAT OPSThreat News › [GHSA] GHSA-pfvc-3p5h-x7h6 (critical) — Wings exposes node configuration secrets through egg configuration-file templating

[GHSA] GHSA-pfvc-3p5h-x7h6 (critical) — Wings exposes node configuration secrets through egg configuration-file templating

medgithub_advisoriesPublished 2026-07-31

GHSA-pfvc-3p5h-x7h6 Severity: critical CVE: CVE-2026-52855

Wings exposes node configuration secrets through egg configuration-file templating

### Impact

**Type:** Exposure of sensitive information / insufficiently protected credentials leading to privilege escalation and full node compromise.

Wings exposes its **entire** daemon configuration to the egg configuration-file templating engine. Whe

MITRE ATT&CK techniques

Indicators of compromise

Original source: https://github.com/advisories/GHSA-pfvc-3p5h-x7h6