—
GO-2026-5052
Vulnerability in software.sslmate.com/src/go-pkcs12
Quick fix
GO-2026-5052 — software.sslmate.com/src/go-pkcs12: upgrade to the fixed version with the command below.
go get software.sslmate.com/src/go-pkcs12@v0.7.2 Details
Users who decode PKCS#12 files from untrusted sources and rely on the password for authentication can be tricked into accepting malicious PKCS#12 files.
Are you affected?
Enter the version of the package you're using.
Affected packages
Go / software.sslmate.com/src/go-pkcs12
Introduced in:
0.6.0 Fixed in: 0.7.2 Fix
go get software.sslmate.com/src/go-pkcs12@v0.7.2