CVE-2022-23773

CVE-2022-23773

cmd/go in Go before 1.16.14 and 1.17.x before 1.17.7 can misinterpret branch names that falsely appear to be version tags. This can lead to incorrect access control if an actor is supposed to be able to create branches but not tags.

Source: CVE-2022-23773

답글 남기기

이메일 주소는 공개되지 않습니다. 필수 필드는 *로 표시됩니다