CRITICAL9.6npm
GHSA-pf56-329r-95rw· CVE-2026-59891Credential confusion in @sigstore/oci can leak registry credentials to an attacker-controlled registry
Modified: 7/21/2026
package
pkg:npm/%40sigstore/oci
Credential confusion in @sigstore/oci can leak registry credentials to an attacker-controlled registry
Modified: 7/21/2026