Vulnerability Database
Blog
FAQ
Docs
GO-2024-2860
See a problem?
Source
https://pkg.go.dev/vuln/GO-2024-2860
Import Source
https://vuln.go.dev/ID/GO-2024-2860.json
JSON Data
https://api.osv.dev/v1/vulns/GO-2024-2860
Aliases
GHSA-f6mm-5fc7-3g3c
Published
2024-06-04T15:19:21Z
Modified
2024-06-04T16:56:54.458357Z
Summary
goreleaser shows environment by default in github.com/goreleaser/goreleaser
Details
goreleaser shows environment by default in github.com/goreleaser/goreleaser
References
https://github.com/goreleaser/goreleaser/security/advisories/GHSA-f6mm-5fc7-3g3c
https://github.com/goreleaser/goreleaser/commit/22f734e41f7a5111a031a3a4eb714c1b6aa6456b
https://github.com/goreleaser/goreleaser/pull/4787
Affected packages
Go
/
github.com/goreleaser/goreleaser
Package
Name
github.com/goreleaser/goreleaser
View open source insights on deps.dev
Purl
pkg:golang/github.com/goreleaser/goreleaser
Affected ranges
Type
SEMVER
Events
Introduced
1.26.0
Fixed
1.26.1
GO-2024-2860 - OSV