Package impact
Go / github.com/nhost/nhost
| CVE | Severity | CVSS | Risk | Published | Description | Impact |
|---|---|---|---|---|---|---|
| CVE-2026-41574 | critical | 9.8 | 9.8 | 20d ago | Nhost Vulnerable to Account Takeover via OAuth Email Verification Bypass | |
| CVE-2026-34969 | unknown | — | — | 2mo ago | Nhost Leaks Refresh Tokens via URL Query Parameter in OAuth Provider Callback | |
| CVE-2026-33221 | unknown | — | — | 2mo ago | Nhost Storage Affected by MIME Type Spoofing via Trusted Client Content-Type Header in Storage Upload in github.com/nhost/nhost |