blob: 9a7745c5e7e7dc20070c11e1b20232c8954f6a6c [file] [log] [blame]
id: GO-2025-3707
modules:
- module: github.com/openfga/openfga
versions:
- introduced: 1.8.0
- fixed: 1.8.13
vulnerable_at: 1.8.12
summary: OpenFGA Authorization Bypass in github.com/openfga/openfga
cves:
- CVE-2025-48371
references:
- advisory: https://nvd.nist.gov/vuln/detail/CVE-2025-48371
- fix: https://github.com/openfga/openfga/commit/e5960d4eba92b723de8ff3a5346a07f50c1379ca
- web: https://github.com/openfga/openfga/security/advisories/GHSA-c72g-53hw-82q7
source:
id: CVE-2025-48371
created: 2025-05-23T11:19:40.662898-04:00
review_status: UNREVIEWED