Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2024-44905

Опубликовано: 12 июн. 2025
Источник: debian

Описание

go-pg pg v10.13.0 was discovered to contain a SQL injection vulnerability via the component /types/append_value.go.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
golang-gopkg-pg.v5removedpackage
golang-gopkg-pg.v5no-dsatrixiepackage
golang-gopkg-pg.v5no-dsabookwormpackage
golang-gopkg-pg.v5postponedbullseyepackage

Примечания

  • https://github.com/advisories/GHSA-6xp3-p59p-q4fj

  • Fixed by: https://github.com/go-pg/pg/commit/eff50a43724e52347559687a6945c116afbb41c1 (v10.15.0)

Связанные уязвимости

CVSS3: 6.5
ubuntu
8 месяцев назад

go-pg pg v10.13.0 was discovered to contain a SQL injection vulnerability via the component /types/append_value.go.

CVSS3: 6.5
nvd
8 месяцев назад

go-pg pg v10.13.0 was discovered to contain a SQL injection vulnerability via the component /types/append_value.go.

CVSS3: 6.5
github
8 месяцев назад

go-pg SQL injection vulnerability via the component /types/append_value.go