Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2025-54956

Опубликовано: 03 авг. 2025
Источник: debian
EPSS Низкий

Описание

The gh package before 1.5.0 for R delivers an HTTP response in a data structure that includes the Authorization header from the corresponding HTTP request.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
r-cran-ghunfixedpackage
r-cran-ghno-dsatrixiepackage
r-cran-ghno-dsabookwormpackage

Примечания

  • https://github.com/r-lib/gh/issues/222

  • https://github.com/r-lib/gh/commit/b575d488c71318449cc6c8c989c617db29275848 (v1.5.0)

EPSS

Процентиль: 2%
0.00015
Низкий

Связанные уязвимости

CVSS3: 3.2
ubuntu
25 дней назад

The gh package before 1.5.0 for R delivers an HTTP response in a data structure that includes the Authorization header from the corresponding HTTP request.

CVSS3: 3.2
nvd
25 дней назад

The gh package before 1.5.0 for R delivers an HTTP response in a data structure that includes the Authorization header from the corresponding HTTP request.

CVSS3: 3.2
github
25 дней назад

The gh package before 1.5.0 for R delivers an HTTP response in a data structure that includes the Authorization header from the corresponding HTTP request.

EPSS

Процентиль: 2%
0.00015
Низкий