blob: 7aa924d900e36b19e479e3429587685bc49c06b2 [file] [log] [blame]
id: GO-2023-1509
modules:
- module: github.com/go-sonic/sonic
versions:
- fixed: 1.0.5
vulnerable_at: 1.0.4
summary: Path Traversal in github.com/go-sonic/sonic
cves:
- CVE-2022-46959
ghsas:
- GHSA-2x48-p6cq-5xcw
references:
- advisory: https://github.com/advisories/GHSA-2x48-p6cq-5xcw
- advisory: https://nvd.nist.gov/vuln/detail/CVE-2022-46959
- fix: https://github.com/go-sonic/sonic/pull/61/commits/3b00266a13fa69284f4b3f4b37d29be8f8e02f31
- report: https://github.com/go-sonic/sonic/issues/56
- web: https://github.com/go-sonic/sonic/releases/tag/v1.0.5
source:
id: GHSA-2x48-p6cq-5xcw
created: 2024-08-20T11:29:59.937901-04:00
review_status: UNREVIEWED
unexcluded: EFFECTIVELY_PRIVATE