Vulnerability Database
Blog
FAQ
Docs
GO-2024-3034
See a problem?
Source
https://pkg.go.dev/vuln/GO-2024-3034
Import Source
https://vuln.go.dev/ID/GO-2024-3034.json
JSON Data
https://api.osv.dev/v1/vulns/GO-2024-3034
Aliases
CVE-2024-36533
GHSA-5g3x-8g2v-r8x8
Published
2024-08-06T22:03:16Z
Modified
2024-08-06T22:26:57.889389Z
Summary
Volcano has insecure permissions in volcano.sh/volcano
Details
Volcano has insecure permissions in volcano.sh/volcano
References
https://github.com/advisories/GHSA-5g3x-8g2v-r8x8
https://nvd.nist.gov/vuln/detail/CVE-2024-36533
https://gist.github.com/HouqiyuA/a0e05a26ecc80bd970ac4649faecc930
https://github.com/volcano-sh/volcano/commit/55963f71c76cb85cea1cdb9582ea7d58cfbedcf8
https://github.com/volcano-sh/volcano/issues/3446
https://github.com/volcano-sh/volcano/pull/3449
Affected packages
Go
/
volcano.sh/volcano
Package
Name
volcano.sh/volcano
View open source insights on deps.dev
Purl
pkg:golang/volcano.sh/volcano
Affected ranges
Type
SEMVER
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
1.10.0-alpha.0
GO-2024-3034 - OSV