—
GO-2026-5467
Authorizer: CQL/N1QL Injection in Cassandra and Couchbase Backends via fmt.Sprintf String Interpolation in github.com/authorizerdev/authorizer
Details
Authorizer: CQL/N1QL Injection in Cassandra and Couchbase Backends via fmt.Sprintf String Interpolation in github.com/authorizerdev/authorizer
Are you affected?
Enter the version of the package you're using.
Affected packages
Go / github.com/authorizerdev/authorizer
Introduced in:
0 Fixed in: 0.0.0-20260327055742-73679faa53cd Fix
go get github.com/authorizerdev/authorizer@v0.0.0-20260327055742-73679faa53cd References
- https://github.com/authorizerdev/authorizer/security/advisories/GHSA-jfwg-rxf3-p7r9 [ADVISORY]
- https://github.com/authorizerdev/authorizer/commit/73679faa53cd215c7524d651046e402c43809786 [FIX]
- https://github.com/authorizerdev/authorizer/pull/500 [FIX]
- https://github.com/authorizerdev/authorizer/releases/tag/2.0.1 [WEB]