—
GO-2026-6233
Openshift Migration Advisor: Improper input sanitization allows specially crafted RVTools .xlsx files to include malicious SQL commands in github.com/kubev2v/migration-planner
Quick fix
GO-2026-6233 — github.com/kubev2v/migration-planner: upgrade to the fixed version with the command below.
go get github.com/kubev2v/migration-planner@v0.13.5Details
Openshift Migration Advisor: Improper input sanitization allows specially crafted RVTools .xlsx files to include malicious SQL commands in github.com/kubev2v/migration-planner
Are you affected?
Enter the version of the package you're using.
Affected packages
Go/github.com/kubev2v/migration-planner
Introduced in:
0Fixed in: 0.13.5Fix
go get github.com/kubev2v/migration-planner@v0.13.5References
- https://github.com/advisories/GHSA-vf2h-7x3w-97fr[ADVISORY]
- https://nvd.nist.gov/vuln/detail/CVE-2026-53474[ADVISORY]
- https://github.com/kubev2v/migration-planner/commit/6110711b1b71bb0d15348b934a490a5932b41f83[FIX]
- https://github.com/kubev2v/migration-planner/pull/1231[FIX]
- https://access.redhat.com/security/cve/CVE-2026-53474[WEB]
- https://bugzilla.redhat.com/show_bug.cgi?id=2487231[WEB]