blob: b33e6e260042ebafd7f6c5a20e862fb2221f47de [file] [log] [blame]
id: GO-2024-2636
modules:
- module: github.com/1Panel-dev/1Panel
versions:
- fixed: 1.10.1-lts
vulnerable_at: 1.10.0-lts
summary: 1Panel is vulnerable to command injection in github.com/1Panel-dev/1Panel
cves:
- CVE-2024-2352
ghsas:
- GHSA-x2vg-5wrf-vj6v
references:
- advisory: https://github.com/advisories/GHSA-x2vg-5wrf-vj6v
- advisory: https://nvd.nist.gov/vuln/detail/CVE-2024-2352
- fix: https://github.com/1Panel-dev/1Panel/pull/4131
- fix: https://github.com/1Panel-dev/1Panel/pull/4131#issue-2176105990
- fix: https://github.com/1Panel-dev/1Panel/pull/4131/commits/0edd7a9f6f5100aab98a0ea6e5deedff7700396c
- web: https://vuldb.com/?ctiid.256304
- web: https://vuldb.com/?id.256304
source:
id: GHSA-x2vg-5wrf-vj6v
created: 2024-08-16T16:19:57.816351-04:00
review_status: UNREVIEWED