THREATOPS
THREAT OPSThreat News › [GHSA] GHSA-w7wx-5q49-r59w (high) — CodeWhale: image_analyze follows workspace symlinks, leaking external file bytes

[GHSA] GHSA-w7wx-5q49-r59w (high) — CodeWhale: image_analyze follows workspace symlinks, leaking external file bytes

highgithub_advisoriesPublished 2026-09-04

GHSA-w7wx-5q49-r59w Severity: high CVE: CVE-2026-75914

CodeWhale: image_analyze follows workspace symlinks, leaking external file bytes

### Maintainer resolution

The CodeWhale maintainers validated this report. The affected package ranges are recorded in the advisory metadata. Version 0.8.64 contains the fix in commit 26de44a8bd5051f8f944ea60b2c37ae1d2b7d25e. Users should upgrade to 0.8.64 or l

Indicators of compromise

Original source: https://github.com/advisories/GHSA-w7wx-5q49-r59w