blob: 16ce0a82766ca237e56b9e2c57850ff788098424 [file] [log] [blame]
id: GO-2022-0350
modules:
- module: github.com/stripe/stripe-cli
versions:
- fixed: 1.7.13
vulnerable_at: 1.7.12
summary: Code injection in Stripe CLI on windows in github.com/stripe/stripe-cli
cves:
- CVE-2022-24753
ghsas:
- GHSA-4cx6-fj7j-pjx9
references:
- advisory: https://github.com/stripe/stripe-cli/security/advisories/GHSA-4cx6-fj7j-pjx9
- advisory: https://nvd.nist.gov/vuln/detail/CVE-2022-24753
- fix: https://github.com/stripe/stripe-cli/commit/be38da5c0191adb77f661f769ffff2fbc7ddf6cd
source:
id: GHSA-4cx6-fj7j-pjx9
created: 2024-08-20T13:51:47.023504-04:00
review_status: UNREVIEWED
unexcluded: EFFECTIVELY_PRIVATE