blob: 019131f2c539adf100b40d84201f69e1d30a1fd1 [file] [log] [blame]
id: GO-2024-2496
modules:
- module: github.com/apache/servicecomb-service-center
non_go_versions:
- fixed: 2.2.0
vulnerable_at: 1.4.8
summary: |-
Apache ServiceComb Service-Center Exposure of Sensitive Information to an
Unauthorized Actor vulnerability in github.com/apache/servicecomb-service-center
cves:
- CVE-2023-44312
ghsas:
- GHSA-r8xp-52mq-rmm8
references:
- advisory: https://github.com/advisories/GHSA-r8xp-52mq-rmm8
- advisory: https://nvd.nist.gov/vuln/detail/CVE-2023-44312
- web: http://www.openwall.com/lists/oss-security/2024/01/31/5
- web: https://lists.apache.org/thread/dkvlgnrmc17qzjdy9k0cr60wpzcssk1s
source:
id: GHSA-r8xp-52mq-rmm8
created: 2024-06-14T11:38:00.285197-04:00
review_status: UNREVIEWED
unexcluded: EFFECTIVELY_PRIVATE