—
GO-2026-5467
Authorizer: CQL/N1QL Injection in Cassandra and Couchbase Backends via fmt.Sprintf String Interpolation in github.com/authorizerdev/authorizer
Quick fix
GO-2026-5467 — github.com/authorizerdev/authorizer: upgrade to the fixed version with the command below.
go get github.com/authorizerdev/authorizer@v0.0.0-20260327055742-73679faa53cdDetails
Authorizer: CQL/N1QL Injection in Cassandra and Couchbase Backends via fmt.Sprintf String Interpolation in github.com/authorizerdev/authorizer
Are you affected?
Enter the version of the package you're using.
Affected packages
Go/github.com/authorizerdev/authorizer
Introduced in:
0Fixed in: 0.0.0-20260327055742-73679faa53cdFix
go get github.com/authorizerdev/authorizer@v0.0.0-20260327055742-73679faa53cdReferences
- https://github.com/authorizerdev/authorizer/security/advisories/GHSA-jfwg-rxf3-p7r9[ADVISORY]
- https://github.com/authorizerdev/authorizer/commit/73679faa53cd215c7524d651046e402c43809786[FIX]
- https://github.com/authorizerdev/authorizer/pull/500[FIX]
- https://github.com/authorizerdev/authorizer/releases/tag/2.0.1[WEB]