malicious module proxy can exploit a flaw in the go command's validation of module checksums to bypass checksum database validation
Details
Security vulnerability affects the loki package. A malicious module proxy can exploit a flaw in the go command's validation of module checksums to bypass checksum database validation.