—
GO-2023-1719
Answer vulnerable to account takeover because password reset links do not expire in github.com/answerdev/answer
Quick fix
GO-2023-1719 — github.com/answerdev/answer: upgrade to the fixed version with the command below.
go get github.com/answerdev/answer@v1.0.6Details
Answer vulnerable to account takeover because password reset links do not expire in github.com/answerdev/answer
Are you affected?
Enter the version of the package you're using.
Affected packages
Go/github.com/answerdev/answer
Introduced in:
0Fixed in: 1.0.6Fix
go get github.com/answerdev/answer@v1.0.6