THREATOPS
THREAT OPSThreat News › [GHSA] GHSA-ghrq-5wpp-hxx5 (high) — Wings: Maliciously crafted packet during SFTP connection handshake causes denial of service

[GHSA] GHSA-ghrq-5wpp-hxx5 (high) — Wings: Maliciously crafted packet during SFTP connection handshake causes denial of service

medgithub_advisoriesPublished 2026-07-31

GHSA-ghrq-5wpp-hxx5 Severity: high CVE: CVE-2026-52856

Wings: Maliciously crafted packet during SFTP connection handshake causes denial of service

### Summary A maliciously crafted packet received & parsed during the SFTP connection handshake will cause a Go panic.

### Impact All wings users with an open SFTP port.

### Workarounds Close SFTP port.

Indicators of compromise

Original source: https://github.com/advisories/GHSA-ghrq-5wpp-hxx5