Launch Week Day 1: Announcing Security Design Review
UNKNOWN Go

LookupResources Cursor section tampering can crash SpiceDB process via tuple.MustParse panic in github.com/authzed/spicedb

GO-2026-4465 · GHSA-vhvq-fv9f-wh4q

Published · Modified

Description

LookupResources Cursor section tampering can crash SpiceDB process via tuple.MustParse panic in github.com/authzed/spicedb.

NOTE: The source advisory for this report contains additional versions that could not be automatically mapped to standard Go module versions.

(If this is causing false-positive reports from vulnerability scanners, please suggest an edit to the report.)

The additional affected modules and versions are: .

Ready to move

Start Securing

Free, no credit card | First findings in minutes