A vulnerability classified as problematic has been found in forgekeep nebula-mesh up to 0.3.0. Affected by this issue is some unknown functionality. This manipulation causes permissive cross-domain policy with untrusted domains.

This vulnerability is handled as CVE-2026-47723. The attack can be initiated remotely. There is not any exploit available.

It is recommended to upgrade the affected component.