Privilege Escalation via WebSocket Connection Hijacking in Operations API in github.com/canonical/lxd
{ "review_status": "REVIEWED", "url": "https://pkg.go.dev/vuln/GO-2025-3999" }
{ "custom_ranges": [ { "type": "ECOSYSTEM", "events": [ { "introduced": "0.0.0-20200331193331-03aab09f5b5c" }, { "fixed": "0.0.0-20250827065555-0494f5d47e41" }, { "introduced": "4.0.0" }, { "fixed": "5.21.4" }, { "introduced": "6.0.0" }, { "fixed": "6.5.0" } ] } ] }