Explain released Agent isolation and indirect req.agent access for GHSA-h85j-hv3c-qfgq - #10123
Open
nazeeh111 wants to merge 1 commit into
Conversation
github-actions
Bot
changed the base branch from
main
to
nazeeh111/advisory-improvement-10123
October 3, 2026 04:55
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
Explain released Agent isolation and indirect req.agent access for GHSA-h85j-hv3c-qfgq
The advisory explains direct access to the host
https.globalAgent, but its public fix also addresses an indirect access path through theagentproperty of a request returned byhttps.request(). Replacing only the exposedglobalAgentproperty leaves the original request helpers using the host default Agent internally.This appends a short remediation section identifying the existing 3.11.7 fix: the exposed Agent is separate, and
https.request()/https.get()use it by default while preserving caller-supplied agents. This matters when evaluating a local workaround that masks only the visible property. The original report, affected ranges, severity, references and all other fields remain unchanged. No HTTP affected range, additional runtime, original discovery claim or credit is added.Public primary evidence:
req.agentroute and defaults both request helpers to the dedicated Agent. Its regression test explicitly covers this variant and retained HTTPS helpers.Validation: original and proposed records pass the OSV schema; the only changed field is
details. Exact GHSA and CVE PR searches returned zero results during preparation. No exploit or upstream test was executed locally.Prepared with Codex assistance and public source analysis. This improves an already disclosed advisory and does not claim original vulnerability discovery.