blob: 4223e0ad168603b84cb05bfadda3c34af32a6259 [file] [log] [blame]
id: GO-2022-0960
modules:
- module: github.com/fluxcd/flux2
versions:
- introduced: 0.21.0
- fixed: 0.32.0
vulnerable_at: 0.31.5
summary: Flux CLI Workload Injection in github.com/fluxcd/flux2
cves:
- CVE-2022-36035
ghsas:
- GHSA-xwf3-6rgv-939r
references:
- advisory: https://github.com/fluxcd/flux2/security/advisories/GHSA-xwf3-6rgv-939r
- advisory: https://nvd.nist.gov/vuln/detail/CVE-2022-36035
- web: https://github.com/fluxcd/flux2/releases/tag/v0.32.0
source:
id: GHSA-xwf3-6rgv-939r
created: 2024-08-20T14:34:16.297075-04:00
review_status: UNREVIEWED
unexcluded: NOT_IMPORTABLE