> USN-8883-1: Go vulnerability
[DATE: 06/10/2026 14:27]
[LANGUAGE: EN]
It was discovered that the Go x/net/idna package incorrectly handled
certain Punycode-encoded labels that decoded to ASCII-only labels. An
attacker could possibly use this issue to bypass hostname-based access
controls and escalate privileges.