| id: GO-2024-3211 |
| modules: |
| - module: github.com/openshift/console |
| vulnerable_at: 6.0.6+incompatible |
| summary: 'Graphql: information disclosure via graphql introspection in openshift in github.com/openshift/console' |
| cves: |
| - CVE-2024-50312 |
| credits: |
| - Red Hat would like to thank Maksymilian Kubiak (AFINE), Paweł Zdunek (AFINE), and Sławomir Zakrzewski (AFINE) for reporting this issue. |
| references: |
| - advisory: https://nvd.nist.gov/vuln/detail/CVE-2024-50312 |
| - fix: https://github.com/openshift/console/pull/14409/files |
| - report: https://bugzilla.redhat.com/show_bug.cgi?id=2319378 |
| - web: https://access.redhat.com/security/cve/CVE-2024-50312 |
| source: |
| id: CVE-2024-50312 |
| created: 2024-10-28T11:08:05.713064-04:00 |
| review_status: UNREVIEWED |