—
GO-2025-3472
SSRF in sliver teamserver in github.com/bishopfox/sliver
Quick fix
GO-2025-3472 — github.com/bishopfox/sliver: upgrade to the fixed version with the command below.
go get github.com/bishopfox/sliver@v1.5.43Details
SSRF in sliver teamserver in github.com/bishopfox/sliver
Are you affected?
Enter the version of the package you're using.
Affected packages
Go/github.com/bishopfox/sliver
Introduced in:
1.5.26Fixed in: 1.5.43Fix
go get github.com/bishopfox/sliver@v1.5.43References
- https://github.com/BishopFox/sliver/security/advisories/GHSA-fh4v-v779-4g2w[ADVISORY]
- https://nvd.nist.gov/vuln/detail/CVE-2025-27090[ADVISORY]
- https://github.com/BishopFox/sliver/commit/0f340a25cf3d496ed870dae7da39eab4427bc16f[WEB]
- https://github.com/BishopFox/sliver/commit/10e245326070c6a5884a02e0790bb7e2baefb3a1[WEB]