—
GO-2026-5400
Cillium exposes sensitive information included in the cilium-bugtool debug archive in github.com/cilium/cilium
Quick fix
GO-2026-5400 — github.com/cilium/cilium: upgrade to the fixed version with the command below.
go get github.com/cilium/cilium@v1.17.15Details
Cillium exposes sensitive information included in the cilium-bugtool debug archive in github.com/cilium/cilium
Are you affected?
Enter the version of the package you're using.
Affected packages
Go/github.com/cilium/cilium
Introduced in:
0Fixed in: 1.17.15Fix
go get github.com/cilium/cilium@v1.17.15References
- https://github.com/cilium/cilium/security/advisories/GHSA-gj49-89wh-h4gj[ADVISORY]
- https://nvd.nist.gov/vuln/detail/CVE-2026-41520[ADVISORY]
- http://docs.cilium.io/en/stable/security/network/encryption-wireguard[WEB]
- https://github.com/cilium/cilium/releases/tag/v1.17.15[WEB]
- https://github.com/cilium/cilium/releases/tag/v1.18.9[WEB]
- https://github.com/cilium/cilium/releases/tag/v1.19.3[WEB]