blob: ec24d283489dfe30e04c5590c8bc769e4230956d [file] [log] [blame]
id: GO-2022-0298
modules:
- module: github.com/github/gh-ost
versions:
- fixed: 1.1.3
vulnerable_at: 1.1.2
summary: Command injection in gh-ost in github.com/github/gh-ost
cves:
- CVE-2022-21687
ghsas:
- GHSA-rrp4-2xx3-mv29
references:
- advisory: https://github.com/github/gh-ost/security/advisories/GHSA-rrp4-2xx3-mv29
- advisory: https://nvd.nist.gov/vuln/detail/CVE-2022-21687
- fix: https://github.com/github/gh-ost/commit/a91ab042de013cfd8fbb633763438932d9080d8f
source:
id: GHSA-rrp4-2xx3-mv29
created: 2024-08-20T12:56:29.18545-04:00
review_status: UNREVIEWED
unexcluded: NOT_IMPORTABLE