Security: gojue/moling
Security
No security policy detected
This project has not set up a SECURITY.md file yet.
-
SSE mode exposes unauthenticated endpoint with CORS wildcard, leaking sessionId to cross-origin attackersGHSA-qpgh-hp5g-4vwp published
Jun 27, 2026 by cfc4nCritical
Learn more about advisories related to gojue/moling in the GitHub Advisory Database