blob: 1f392fe4b6a4877b793f0480e818ed9fdc6d5ea0 [file] [log] [blame]
id: GO-2024-2723
modules:
- module: github.com/apache/solr-operator
versions:
- introduced: 0.3.0
- fixed: 0.8.1
vulnerable_at: 0.8.0
summary: |-
Apache Solr Operator liveness and readiness probes may leak basic auth
credentials in github.com/apache/solr-operator
cves:
- CVE-2024-31391
ghsas:
- GHSA-g9qx-25vj-rf53
references:
- advisory: https://github.com/advisories/GHSA-g9qx-25vj-rf53
- advisory: https://nvd.nist.gov/vuln/detail/CVE-2024-31391
- web: http://www.openwall.com/lists/oss-security/2024/04/12/7
- web: https://lists.apache.org/thread/w7011s78lzywzwyszvy4d8zm99ybt8c7
source:
id: GHSA-g9qx-25vj-rf53
created: 2024-05-17T16:13:13.550401-04:00
review_status: UNREVIEWED