Executive brief
Fulcio allocates excessive memory during token parsing in github.com/sigstore/fulcio
Affected products
- Go github.com/sigstore/fulcio
Junglewise Threat Intelligence
CVE-2025-66506 · Severity: low · CVSS 3.1 · Published 2025-12-08
Technologies: github.com/sigstore/fulcio (Go). Vendors: Go.
Fulcio allocates excessive memory during token parsing in github.com/sigstore/fulcio