THREAT OPS › Threat News › [GHSA] GHSA-pfvc-3p5h-x7h6 (critical) — Wings exposes node configuration secrets through egg configuration-file templating
[GHSA] GHSA-pfvc-3p5h-x7h6 (critical) — Wings exposes node configuration secrets through egg configuration-file templating
GHSA-pfvc-3p5h-x7h6 Severity: critical CVE: CVE-2026-52855
Wings exposes node configuration secrets through egg configuration-file templating
### Impact
**Type:** Exposure of sensitive information / insufficiently protected credentials leading to privilege escalation and full node compromise.
Wings exposes its **entire** daemon configuration to the egg configuration-file templating engine. Whe
MITRE ATT&CK techniques
- CredentialsT1589.001
Indicators of compromise
- CVE-2026-52855cve
Original source: https://github.com/advisories/GHSA-pfvc-3p5h-x7h6