blob: aed3ce5fe1699cdd627b209e59598ec344e026d7 [file] [log] [blame]
id: GO-2025-3455
modules:
- module: github.com/edgelesssys/contrast
versions:
- fixed: 1.4.1
vulnerable_at: 1.4.0
summary: Contrast's unauthenticated recovery allows Coordinator impersonation in github.com/edgelesssys/contrast
ghsas:
- GHSA-vqv5-385r-2hf8
references:
- advisory: https://github.com/edgelesssys/contrast/security/advisories/GHSA-vqv5-385r-2hf8
source:
id: GHSA-vqv5-385r-2hf8
created: 2025-02-05T18:05:01.530316-05:00
review_status: UNREVIEWED