Vulnerability Database
Blog
FAQ
Docs
GO-2024-3125
See a problem?
Source
https://pkg.go.dev/vuln/GO-2024-3125
Import Source
https://vuln.go.dev/ID/GO-2024-3125.json
JSON Data
https://api.osv.dev/v1/vulns/GO-2024-3125
Aliases
CVE-2024-8572
GHSA-pv7h-hg6m-82j8
Published
2024-09-13T21:52:58Z
Modified
2024-09-13T22:27:43.074780Z
Summary
Gouniverse GoLang CMS vulnerable to Cross-site Scripting in github.com/gouniverse/cms
Details
Gouniverse GoLang CMS vulnerable to Cross-site Scripting in github.com/gouniverse/cms
References
https://github.com/advisories/GHSA-pv7h-hg6m-82j8
https://nvd.nist.gov/vuln/detail/CVE-2024-8572
https://github.com/gouniverse/cms/commit/3e661cdfb4beeb9fe2ad507cdb8104c0b17d072c
https://github.com/gouniverse/cms/issues/5
https://github.com/gouniverse/cms/issues/5#issuecomment-2330848731
https://github.com/gouniverse/cms/releases/tag/v1.4.1
https://vuldb.com/?ctiid.276802
https://vuldb.com/?id.276802
https://vuldb.com/?submit.401896
Affected packages
Go
/
github.com/gouniverse/cms
Package
Name
github.com/gouniverse/cms
View open source insights on deps.dev
Purl
pkg:golang/github.com/gouniverse/cms
Affected ranges
Type
SEMVER
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
1.4.1
GO-2024-3125 - OSV