CVE-2026-31839

Publication date

2026-03-11 16:46:22

Family

GitHub_M

State

PUBLISHED

Description

Striae is a firearms examiners comparison companion. A high-severity integrity bypass vulnerability existed in Striaes digital confirmation workflow prior to v3.0.0. Hash-only validation trusted manifest hash fields that could be modified together with package content, allowing tampered confirmation packages to pass integrity checks. This vulnerability is fixed in 3.0.0.