---
id: GO-2026-5935
aliases:
  - GHSA-7856-g3gv-9wq8
title: >-
  netfoil: Attacker controlled data written to logs in
  github.com/tinfoil-factory/netfoil
summary: >-
  netfoil: Attacker controlled data written to logs in
  github.com/tinfoil-factory/netfoil
severity: none
vendor: tinfoil-factory
product: github.com/tinfoil-factory/netfoil
ecosystem: go
affected:
  - github.com/tinfoil-factory/netfoil < 0.3.0
patched:
  - github.com/tinfoil-factory/netfoil 0.3.0
published: '2026-07-17'
updated: '2026-07-21'
source: OSV
sourceUrl: 'https://osv.dev/vulnerability/GO-2026-5935'
references:
  - url: >-
      https://github.com/tinfoil-factory/netfoil/security/advisories/GHSA-7856-g3gv-9wq8
tags:
  - osv
  - go
ingestedAt: '2026-07-22T15:33:23.452Z'
---

## Overview

netfoil: Attacker controlled data written to logs in github.com/tinfoil-factory/netfoil

## Affected packages

- `github.com/tinfoil-factory/netfoil < 0.3.0`

## Remediation

Upgrade to a patched release:

- `github.com/tinfoil-factory/netfoil 0.3.0`
