—
GO-2026-4390
Beam Exposes sensitive information via joinCleanPath function in github.com/beam-cloud/beta9
Details
Beam Exposes sensitive information via joinCleanPath function in github.com/beam-cloud/beta9
Are you affected?
Enter the version of the package you're using.
Affected packages
Go/github.com/beam-cloud/beta9
Introduced in:
0No fixed version published yet for github.com/beam-cloud/beta9 (go modules). Pin to a known-safe version or switch to an alternative.
References
- https://github.com/advisories/GHSA-73jg-4qh6-3f4g[ADVISORY]
- https://nvd.nist.gov/vuln/detail/CVE-2025-69820[ADVISORY]
- https://github.com/beam-cloud/beta9/blob/c1cd75e813cf7d53e916157d920099e89ef45caa/pkg/abstractions/volume/multipart.go#L45[WEB]
- https://github.com/ryotaromatsui/CVEs/tree/main/CVE-2025-69820[WEB]