| id: GO-2025-3587 |
| modules: |
| - module: github.com/apache/answer |
| versions: |
| - fixed: 1.4.5 |
| vulnerable_at: 1.4.5-RC1 |
| summary: Apache Answer User Using External Images Potentially Discloses User Information in github.com/apache/answer |
| cves: |
| - CVE-2025-29868 |
| ghsas: |
| - GHSA-wqcc-mfhw-53pc |
| references: |
| - advisory: https://github.com/advisories/GHSA-wqcc-mfhw-53pc |
| - advisory: https://nvd.nist.gov/vuln/detail/CVE-2025-29868 |
| - report: https://github.com/apache/answer/issues/1250 |
| - web: https://lists.apache.org/thread/l7pohw5g03g3qsvrz8pqc9t29mdv5lhf |
| source: |
| id: GHSA-wqcc-mfhw-53pc |
| created: 2025-04-02T11:31:04.960681-04:00 |
| review_status: UNREVIEWED |