beego is an open-source, high-performance web framework for the Go programming language. An issue was discovered in file profile.go in function GetCPUProfile in beego through 2.0.2, allows attackers to launch symlink attacks locally.
{ "nvd_published_at": "2022-04-05T16:15:00Z", "github_reviewed_at": "2022-04-07T22:04:06Z", "severity": "HIGH", "github_reviewed": true, "cwe_ids": [ "CWE-59" ] }