x/vulndb: potential Go vuln in github.com/zitadel/zitadel-go/v3: GHSA-qc6v-5g5m-8cw2 #2983
Labels
excluded: DEPENDENT_VULNERABILITY
This vulnerability is downstream of another existing vulnerability report.
triaged
Advisory GHSA-qc6v-5g5m-8cw2 references a vulnerability in the following Go modules:
Description:
Summary
Applications using the
zitadel-go
v3
library (next
branch) might be impacted by package vulnerabilities.The output of
govulncheck
suggests that onlyexample
code seems to be impacted, based on 1 of the 3 potential vulnerabilities. This vulnerability is located in the transitive dependencygolang.org/x/net v0.19.0
, CVE-2023-45288Patches
3.0.0-next versions are fixed on >= 3.0.0-next.3
ZITADEL recommends upgrading to the latest versions available ...
References:
Cross references:
No existing reports found with this module or alias.
See doc/triage.md for instructions on how to triage this report.
The text was updated successfully, but these errors were encountered: