Authorization Bypass Through User-Controlled Key in GitHub repository emicklei/go-restful prior to v3.8.0.
References
| Link | Resource |
|---|---|
| https://huntr.dev/bounties/be837427-415c-4d8c-808b-62ce20aa84f1 | Exploit Patch Third Party Advisory |
| https://github.com/emicklei/go-restful/commit/fd3c327a379ce08c68ef18765bdc925f5d9bad10 | Patch Third Party Advisory |
| https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/OBDD3Q23RCGAGHIXUCWBU6N3S4RNAKXB/ | Mailing List Third Party Advisory |
| https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/575BLJ3Y2EQBRNTFR2OSQQ6L2W6UCST3/ | Mailing List Third Party Advisory |
| https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/ZY2SLWOQR4ZURQ7UBRZ7JIX6H6F5JHJR/ | Mailing List Third Party Advisory |
| https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/Z55VUVGO7E5PJFXIOVAY373NZRHBNCI5/ | Mailing List Third Party Advisory |
Information
Published : 2022-06-08 13:15
Updated : 2022-07-14 17:01
NVD link : CVE-2022-1996
Mitre link : CVE-2022-1996
JSON object : View
Products Affected
fedoraproject
- fedora
go-restful_project
- go-restful
CWE
CWE-639
Authorization Bypass Through User-Controlled Key
