Vulnerability Report: GO-2026-4554

esm.sh has SSRF localhost/private-network bypass in `/http(s)` module route in github.com/esm-dev/esm.sh

For detailed information about this vulnerability, visit https://github.com/esm-dev/esm.sh/security/advisories/GHSA-p2v6-84h2-5x4r or https://nvd.nist.gov/vuln/detail/CVE-2026-27730.

Jump to

Keyboard shortcuts

? : This menu
/ : Search site
f or F : Jump to
y or Y : Canonical URL