Vulnerability Database
Blog
FAQ
Docs
GO-2024-3118
See a problem?
Source
https://pkg.go.dev/vuln/GO-2024-3118
Import Source
https://vuln.go.dev/ID/GO-2024-3118.json
JSON Data
https://api.osv.dev/v1/vulns/GO-2024-3118
Aliases
CVE-2024-8462
GHSA-g6q4-w3j3-jfc4
Published
2024-09-06T20:43:50Z
Modified
2024-09-06T22:11:54.368135Z
Summary
Windmill HTTP Request users.rs excessive authentication in github.com/windmill-labs/windmill
Details
Windmill HTTP Request users.rs excessive authentication in github.com/windmill-labs/windmill
References
https://nvd.nist.gov/vuln/detail/CVE-2024-8462
https://github.com/windmill-labs/windmill/commit/acfe7786152f036f2476f93ab5536571514fa9e3
https://github.com/windmill-labs/windmill/releases/tag/v1.390.1
https://vuldb.com/?ctiid.276630
https://vuldb.com/?id.276630
https://vuldb.com/?submit.401826
Credits
DeepCove (VulDB User)
Affected packages
Go
/
github.com/windmill-labs/windmill
Package
Name
github.com/windmill-labs/windmill
View open source insights on deps.dev
Purl
pkg:golang/github.com/windmill-labs/windmill
Affected ranges
Type
SEMVER
Events
Introduced
0
Unknown introduced version / All previous versions are affected
GO-2024-3118 - OSV