blob: 98d981e3700bf218eb820492d17b2f7d0e76085a [file] [log] [blame]
id: GO-2022-0459
modules:
- module: github.com/stripe/smokescreen
versions:
- fixed: 0.0.4
vulnerable_at: 0.0.3
summary: Smokescreen SSRF via deny list bypass (square brackets) in github.com/stripe/smokescreen
cves:
- CVE-2022-29188
ghsas:
- GHSA-qwrf-gfpj-qvj6
references:
- advisory: https://github.com/stripe/smokescreen/security/advisories/GHSA-qwrf-gfpj-qvj6
- advisory: https://nvd.nist.gov/vuln/detail/CVE-2022-29188
- fix: https://github.com/stripe/smokescreen/commit/dea7b3c89df000f4072ff9866d61d78e30df6a36
source:
id: GHSA-qwrf-gfpj-qvj6
created: 2024-08-20T13:58:07.599173-04:00
review_status: UNREVIEWED
unexcluded: EFFECTIVELY_PRIVATE