Vulnerability Report: GO-2024-3054
- CVE-2024-29026, GHSA-v99w-r56h-g23v
- Affects: github.com/owncast/owncast
- Published: Aug 06, 2024
- Unreviewed
Owncast Cross-Site Request Forgery vulnerability in github.com/owncast/owncast
For detailed information about this vulnerability, visit https://github.com/advisories/GHSA-v99w-r56h-g23v, https://nvd.nist.gov/vuln/detail/CVE-2024-29026, or https://securitylab.github.com/advisories/GHSL-2023-261_Owncast.
Affected Modules
-
PathGo Versions
-
before v0.1.3
Aliases
References
- https://github.com/advisories/GHSA-v99w-r56h-g23v
- https://nvd.nist.gov/vuln/detail/CVE-2024-29026
- https://securitylab.github.com/advisories/GHSL-2023-261_Owncast
- https://github.com/owncast/owncast/commit/9215d9ba0f29d62201d3feea9e77dcd274581624
- https://github.com/owncast/owncast/blob/v0.1.2/router/middleware/auth.go#L32
- https://vuln.go.dev/ID/GO-2024-3054.json
Feedback
This report is unreviewed. It was automatically generated from a third-party source and its details have not been verified by the Go team.
See anything missing or incorrect?
Suggest an edit to this report.