Junglewise Threat Intelligence

CVE-2026-34042: GO-2026-4890 - act: actions/cache server allows malicious cache injection in github.com/nektos/act

CVE-2026-34042 · Severity: low · CVSS 3.1 · Published 2026-04-02

Technologies: github.com/nektos/act (Go). Vendors: Go.

Executive brief

act: actions/cache server allows malicious cache injection in github.com/nektos/act

Affected products

  • Go github.com/nektos/act

Related threats