Vulnerability Report: GO-2024-3250
- CVE-2024-51744, GHSA-29wx-vh33-7x7r
- Affects: github.com/golang-jwt/jwt/v4
- Published: Nov 12, 2024
- Modified: Nov 12, 2024
Improper error handling in ParseWithClaims and bad documentation may cause dangerous situations in github.com/golang-jwt/jwt
For detailed information about this vulnerability, visit https://github.com/golang-jwt/jwt/security/advisories/GHSA-29wx-vh33-7x7r.
Affected Packages
-
PathGo VersionsSymbols
-
before v4.5.1
Aliases
References
- https://github.com/golang-jwt/jwt/security/advisories/GHSA-29wx-vh33-7x7r
- https://github.com/golang-jwt/jwt/commit/7b1c1c00a171c6c79bbdb40e4ce7d197060c1c2c
- https://vuln.go.dev/ID/GO-2024-3250.json
Feedback
See anything missing or incorrect?
Suggest an edit to this report.