Loading
SWIG file names containing 'cgo' and well-crafted payloads could lead to code smuggling and arbitrary code execution at build time due to trust layer bypass.
Use CWE-863, Golang vendor hub and Go product page to widen CVE-2026-27140 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2026-27143, CVE-2026-33810 and CVE-2026-32283 for nearby disclosures in the same product family.