Junglewise Threat Intelligence

CVE-2025-68671: GO-2026-4321 - lakeFS is Missing Timestamp Validation in S3 Gateway Authentication in github.com/treeverse/lakefs

CVE-2025-68671 · Severity: low · CVSS 3.1 · Published 2026-01-23

Technologies: github.com/treeverse/lakefs (Go). Vendors: Go.

Executive brief

lakeFS is Missing Timestamp Validation in S3 Gateway Authentication in github.com/treeverse/lakefs

Affected products

  • Go github.com/treeverse/lakefs

Related threats