mediumVulnerability

GHSA-59qp-cfj3-rp64

### Summary Potential bypass of domain name filter by crafting a DNS request with multiple questions, with the first question being legitimate. ### Impact Depends on a local attackers ability to craft multiple questions and the remote DoH server supporting them.

Properties

ghsa_id
GHSA-59qp-cfj3-rp64
severity
medium
summary
netfoil has a domain name filter bypass via multiple questions
cve_id
GHSA-59qp-cfj3-rp64
is_ghsa_only
true
ghsa_published
2026-07-07T20:03:49Z
source_url
https://github.com/advisories/GHSA-59qp-cfj3-rp64
ghsa_updated
2026-07-07T20:03:50Z

Related Entities (5)

REPORTED_BY (1)

[Source]GitHub Advisory Database

VULNERABLE_TO (1)

[Software]go/github.com/tinfoil-factory/netfoil

AFFECTS (1)

[Software]go/github.com/tinfoil-factory/netfoil

HAS_WEAKNESS (2)

[Weakness]Protection Mechanism Failure
[Weakness]Interpretation Conflict

Explore deeper with Ninja Signal's threat intelligence graph

GHSA-59qp-cfj3-rp64 — Ninja Signal Threat Intelligence | Ninja Signal