blob: 3b4f579e92dcfd4ce19d372a3759a7d0b775e415 [file] [log] [blame]
id: GO-2023-1957
modules:
- module: github.com/KubeOperator/kubepi
versions:
- fixed: 1.6.5
vulnerable_at: 1.6.4
summary: KubePi may leak password hash of any user in github.com/KubeOperator/kubepi
cves:
- CVE-2023-37916
ghsas:
- GHSA-87f6-8gr7-pc6h
references:
- advisory: https://github.com/1Panel-dev/KubePi/security/advisories/GHSA-87f6-8gr7-pc6h
- advisory: https://nvd.nist.gov/vuln/detail/CVE-2023-37916
- web: https://drive.google.com/file/d/1ksdawJ1vShRJyT3wAgpqVmz-Ls6hMA7M/preview
- web: https://github.com/1Panel-dev/KubePi/releases/tag/v1.6.5
source:
id: GHSA-87f6-8gr7-pc6h
created: 2024-08-20T11:54:45.131036-04:00
review_status: UNREVIEWED
unexcluded: EFFECTIVELY_PRIVATE