HIGH
GHSA-28r6-jm5h-mrgg
Access control bypass in Beego
Quick fix
GHSA-28r6-jm5h-mrgg — github.com/beego/beego/v2: upgrade to the fixed version with the command below.
go get github.com/beego/beego/v2@v2.0.3Details
An issue was discovered in the route lookup process in beego through 2.0.1, allows attackers to bypass access control.
Are you affected?
Enter the version of the package you're using.
Affected packages
Go/github.com/beego/beego/v2
Introduced in:
2.0.0Fixed in: 2.0.3Fix
go get github.com/beego/beego/v2@v2.0.3Go/github.com/beego/beego
Introduced in:
0No fixed version published yet for github.com/beego/beego (go modules). Pin to a known-safe version or switch to an alternative.