Beego privilege escalation vulnerability via sendMail in github.com/beego/beego/v2
{
"url": "https://pkg.go.dev/vuln/GO-2024-3016",
"review_status": "REVIEWED"
}{
"imports": [
{
"symbols": [
"AccessLog",
"Alert",
"Async",
"BeeLogger.Alert",
"BeeLogger.Async",
"BeeLogger.Close",
"BeeLogger.Critical",
"BeeLogger.Debug",
"BeeLogger.DelLogger",
"BeeLogger.Emergency",
"BeeLogger.Error",
"BeeLogger.Flush",
"BeeLogger.Info",
"BeeLogger.Informational",
"BeeLogger.Notice",
"BeeLogger.Reset",
"BeeLogger.SetLogger",
"BeeLogger.Trace",
"BeeLogger.Warn",
"BeeLogger.Warning",
"BeeLogger.Write",
"ColorByMethod",
"ColorByStatus",
"Critical",
"Debug",
"Emergency",
"Error",
"GetLogger",
"Info",
"Informational",
"JLWriter.Format",
"JLWriter.Init",
"JLWriter.WriteMsg",
"LogMsg.OldStyleFormat",
"NewLogger",
"Notice",
"PatternLogFormatter.Format",
"PatternLogFormatter.ToString",
"Reset",
"SLACKWriter.Format",
"SLACKWriter.Init",
"SLACKWriter.WriteMsg",
"SMTPWriter.Format",
"SMTPWriter.Init",
"SMTPWriter.WriteMsg",
"SMTPWriter.sendMail",
"SetLogger",
"Trace",
"Warn",
"Warning",
"connWriter.Format",
"connWriter.Init",
"connWriter.WriteMsg",
"consoleWriter.Format",
"consoleWriter.Init",
"consoleWriter.WriteMsg",
"fileLogWriter.Format",
"fileLogWriter.Init",
"fileLogWriter.WriteMsg",
"multiFileLogWriter.Format",
"multiFileLogWriter.Init",
"multiFileLogWriter.WriteMsg",
"newSMTPWriter"
],
"path": "github.com/beego/beego/v2/core/logs"
}
]
}