VYPR

Ringpop Go

by Temporalio

CVEs (1)

  • CVE-2026-65654HigSep 21, 2026
    risk 0.50cvss —epss 0.01

    github.com/temporalio/ringpop-go enforces configured LabelOptions limits when an application changes the local node's labels, but affected versions do not apply those limits to label maps received in SWIM membership changes. A network peer that can reach a live Ringpop TChannel…