Executive brief
Minder trusts client-provided mapping from repo name to upstream ID in github.com/stacklok/minder
Affected products
- Go github.com/stacklok/minder
Junglewise Threat Intelligence
CVE-2024-27093 · Severity: low · CVSS 3.1 · Published 2024-06-28
Technologies: github.com/stacklok/minder (Go). Vendors: Go.
Minder trusts client-provided mapping from repo name to upstream ID in github.com/stacklok/minder