Vulnerability Report: GO-2024-2536
- CVE-2023-32193, GHSA-r8f4-hv23-6qp6
- Affects: github.com/rancher/norman
- Published: Feb 20, 2024
- Modified: May 20, 2024
Cross-site scripting in public API in github.com/rancher/norman
For detailed information about this vulnerability, visit https://github.com/rancher/norman/security/advisories/GHSA-r8f4-hv23-6qp6.
Affected Packages
-
PathGo VersionsSymbols
-
before v0.0.0-20240207153100-3bb70b772b52
-
before v0.0.0-20240207153100-3bb70b772b52
Aliases
References
- https://github.com/rancher/norman/security/advisories/GHSA-r8f4-hv23-6qp6
- https://github.com/rancher/norman/commit/3bb70b772b52297feac64f5fdeb1b13c06c37e39
- https://github.com/rancher/norman/commit/7b2b467995e6dfab6d4a5dee8dffc15033ae8269
- https://github.com/rancher/norman/commit/a6a6cf5696088c32002953d36b75bdcc84f2399e
- https://github.com/rancher/norman/commit/bd13c653293b9b5e0b37e8a6ccd1c3277f4623ed
- https://github.com/rancher/norman/commit/cb54924f25c7666511a913cd41834299ef22dba4
- https://vuln.go.dev/ID/GO-2024-2536.json
Credits
- diego95root, kujalamathias
Feedback
See anything missing or incorrect?
Suggest an edit to this report.