crossplane-contrib / crossplane-contrib/function-patch-and-transform

Security [High] CVE-2025-61723

Open
#264 0 comments 0 reactions 0 assignees View on GitHub
Dominant language
Go
Stars
46
Forks
41
Avg merge
1d 10h
Merged PRs (30d)
3

Description

Vulnerability Details

ID: https://www.tenable.com/cve/CVE-2025-61723
Severity: High
Type: go-module
Description: The processing time for parsing some invalid inputs scales non-linearly with respect to the size of the input. This affects programs which parse untrusted PEM inputs.
Fix State: fixed
Fix Versions: 1.25.2, 1.24.8
More Info: https://groups.google.com/g/golang-announce/c/4Emdl2iQ_bI

Contributor guide

No contributing guide indexed for this repository

Assessment

This issue has not been assessed yet.

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.