{"schema_version":"1.7.5","id":"GO-2026-5805","published":"2026-07-07T15:26:32Z","modified":"2026-07-07T16:00:20.664079166Z","aliases":["CVE-2026-48785","GHSA-cr2j-534f-mf3g"],"summary":"Apptainer has incorrect path matching for 'limit container paths' directive in github.com/apptainer/apptainer","details":"Apptainer has incorrect path matching for 'limit container paths' directive in github.com/apptainer/apptainer","affected":[{"package":{"name":"github.com/apptainer/apptainer","ecosystem":"Go","purl":"pkg:golang/github.com/apptainer/apptainer"},"ranges":[{"type":"SEMVER","events":[{"introduced":"0"},{"fixed":"1.5.1"}]}],"ecosystem_specific":{},"database_specific":{"source":"https://vuln.go.dev/ID/GO-2026-5805.json"}}],"references":[{"type":"ADVISORY","url":"https://github.com/apptainer/apptainer/security/advisories/GHSA-cr2j-534f-mf3g"}],"database_specific":{"review_status":"UNREVIEWED","url":"https://pkg.go.dev/vuln/GO-2026-5805"}}