cve-2024-45337 #1849
Unanswered
brunomurino
asked this question in
Q&A
cve-2024-45337
#1849
Replies: 0 comments
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
-
Hi everyone,
We are using the docker image
ghcr.io/drakkan/sftpgo:v2.6.4-plugins
, and our security tool flagged this CVE onusr/local/bin/sftpgo-plugin-eventstore/PkgId:golang.org/x/[email protected]
.Does anyone know if this actually impacts SFTPGo or if there are any mitigations in the code already, and if not, then how could I mitigate this one?
Many thanks!
Beta Was this translation helpful? Give feedback.
All reactions