—
GO-2024-2478
chasquid HTTP Request/Response Smuggling vulnerability in github.com/albertito/chasquid in blitiri.com.ar/go/chasquid
Quick fix
GO-2024-2478 — blitiri.com.ar/go/chasquid: upgrade to the fixed version with the command below.
go get blitiri.com.ar/go/chasquid@v1.13.0Details
chasquid HTTP Request/Response Smuggling vulnerability in github.com/albertito/chasquid in blitiri.com.ar/go/chasquid
Are you affected?
Enter the version of the package you're using.
Affected packages
Go/blitiri.com.ar/go/chasquid
Introduced in:
0Fixed in: 1.13.0Fix
go get blitiri.com.ar/go/chasquid@v1.13.0References
- https://github.com/advisories/GHSA-g4x3-mfpj-f335[ADVISORY]
- https://nvd.nist.gov/vuln/detail/CVE-2023-52354[ADVISORY]
- https://github.com/albertito/chasquid/commit/a996106eeebe81a292ecba838c7503cac7493e74[FIX]
- https://github.com/albertito/chasquid/issues/47[REPORT]
- https://blitiri.com.ar/p/chasquid/relnotes/#113-2023-12-24[WEB]