blob: 74c3199e2160735889dbea86d82ab3704b34671d [file] [log] [blame]
packages:
- module: github.com/flyteorg/flyteadmin
package: github.com/flyteorg/flyteadmin/auth/authzserver
symbols:
- ResourceServer.ValidateAccessToken
versions:
- fixed: 1.1.31
vulnerable_at: 1.1.30
description: |
Improper validation of access tokens can permit use of expired tokens.
cves:
- CVE-2022-31145
ghsas:
- GHSA-qwrj-9hmp-gpxh
links:
commit: https://github.com/flyteorg/flyteadmin/commit/a1ec282d02706e074bc4986fd0412e5da3b9d00a