Client.Do of the file registry/remote/auth/client.go of the component Client. The manipulation results in server-side request forgery.This vulnerability is cataloged as CVE-2026-48978. The attack may be launched remotely. There is no exploit available.