blob: 8376a5c9a5e9f643cd680a7292380c659e8484f5 [file] [log] [blame]
id: GO-2024-2808
modules:
- module: github.com/firebase/firebase-tools
unsupported_versions:
- cve_version_range: 'affected from 0 to 13.6.0 (default: unaffected)'
vulnerable_at: 13.10.2+incompatible
summary: CSRF in firebase-tools emulator suite in github.com/firebase/firebase-tools
cves:
- CVE-2024-4128
references:
- advisory: https://nvd.nist.gov/vuln/detail/CVE-2024-4128
- fix: https://github.com/firebase/firebase-tools/commit/068a2b08dc308c7ab4b569617f5fc8821237e3a0
- fix: https://github.com/firebase/firebase-tools/pull/6944
source:
id: CVE-2024-4128
created: 2024-06-04T15:26:12.991483-04:00
review_status: UNREVIEWED