-
Notifications
You must be signed in to change notification settings - Fork 143
Open
Labels
bugThis issue describes a defect or unexpected behaviorThis issue describes a defect or unexpected behaviorcarvel triageThis issue has not yet been triaged for relevanceThis issue has not yet been triaged for relevance
Description
The listed CVEs for v0.52.0 includes HIGH.
Vulnerabilities Summary
Total: 3
Severity: UNKNOWN: 0, LOW: 0, MEDIUM: 2, HIGH: 1, CRITICAL: 0
Library | Vulnerability | Severity | Status | Installed Version | Fixed Version | Title |
---|---|---|---|---|---|---|
stdlib | CVE-2025-22874 | HIGH | fixed | 1.24.2 | 1.23.10, 1.24.4 | crypto/x509 : Usage of ExtKeyUsageAny disables policy validation in crypto/x509 |
stdlib | CVE-2025-0913 | MEDIUM | — | — | — | Inconsistent handling of `O_CREATE |
stdlib | CVE-2025-4673 | MEDIUM | — | — | — | Proxy-Authorization and Proxy-Authenticate headers persisted on cross-origin requests |
Kisan-hpe
Metadata
Metadata
Assignees
Labels
bugThis issue describes a defect or unexpected behaviorThis issue describes a defect or unexpected behaviorcarvel triageThis issue has not yet been triaged for relevanceThis issue has not yet been triaged for relevance
Type
Projects
Status
No status