—
GO-2025-3767
OSV-SCALIBR's Container Image Unpacking Vulnerable to Arbitrary File Write via Path Traversal in github.com/google/osv-scalibr
Quick fix
GO-2025-3767 — github.com/google/osv-scalibr: upgrade to the fixed version with the command below.
go get github.com/google/osv-scalibr@v0.2.1Details
OSV-SCALIBR's Container Image Unpacking Vulnerable to Arbitrary File Write via Path Traversal in github.com/google/osv-scalibr
Are you affected?
Enter the version of the package you're using.
Affected packages
Go/github.com/google/osv-scalibr
Introduced in:
0.1.3Fixed in: 0.2.1Fix
go get github.com/google/osv-scalibr@v0.2.1