GHSA-r48q-9g5r-8q2h
Dashboard / Vulnerabilities / GHSA-r48q-9g5r-8q2h
GHSA-r48q-9g5r-8q2h
Summary: Authorization Bypass Through User-Controlled Key in go-restful
Details: Authorization Bypass Through User-Controlled Key in GitHub repository emicklei/go-restful prior to v3.8.0.
References: https://nvd.nist.gov/vuln/detail/CVE-2022-1996, https://github.com/emicklei/go-restful/issues/489, https://github.com/emicklei/go-restful/commit/926662532deb450272956c7bc573978464aae74e, https://github.com/emicklei/go-restful/commit/f292efff46ae17e9d104f865a60a39a2ae9402f1, https://github.com/emicklei/go-restful/commit/fd3c327a379ce08c68ef18765bdc925f5d9bad10, https://security.netapp.com/advisory/ntap-20220923-0005, https://pkg.go.dev/vuln/GO-2022-0619, https://lists.fedoraproject.org/archives/list/[email protected]/message/ZY2SLWOQR4ZURQ7UBRZ7JIX6H6F5JHJR, https://lists.fedoraproject.org/archives/list/[email protected]/message/ZGQKWD6SE75PFBPFVSZYAKAVXKBZXKWS, https://lists.fedoraproject.org/archives/list/[email protected]/message/Z55VUVGO7E5PJFXIOVAY373NZRHBNCI5, https://lists.fedoraproject.org/archives/list/[email protected]/message/W56PP46JVZEKCANBKXFKRVSBBRRMCY6V, https://lists.fedoraproject.org/archives/list/[email protected]/message/SO5QC2JFW2PXBWAE27OYYYL5SPFUBHTY, https://lists.fedoraproject.org/archives/list/[email protected]/message/RQXU752ALW53OJAF5MG3WMR5CCZVLWW6, https://lists.fedoraproject.org/archives/list/[email protected]/message/OBDD3Q23RCGAGHIXUCWBU6N3S4RNAKXB, https://lists.fedoraproject.org/archives/list/[email protected]/message/575BLJ3Y2EQBRNTFR2OSQQ6L2W6UCST3, https://huntr.dev/bounties/be837427-415c-4d8c-808b-62ce20aa84f1, https://github.com/emicklei/go-restful
Affected packages
Package
Name: github.com/emicklei/go-restful/v3
Purl: pkg:golang/github.com/emicklei/go-restful/v3
Affected ranges
Type: SEMVER
Events:
