hashicorp / hashicorp/vault-lambda-extension
CVE-2025-47907 and CVE-2025-47906 vulnerabilities
Open
- Dominant language
- Go
- Stars
- 148
- Forks
- 31
- PR merge metrics
- No merged PRs in 30d
Description
Hello, Hashicorp team!
AWS Inspector has found these vulnerabilities in the vault Lambda extension.
For both, the affected package is `go/stdlib` with an available fix (`v1.24.6`).
Can you please update the package?
FYI, the inspector found two more vulnerabilities, but there isn't a fix for those yet:
CVE-2020-8911 - github.com/aws/aws-sdk-go
CVE-2020-8912 - github.com/aws/aws-sdk-go
Thank you
Contributor guide
No contributing guide indexed for this repository
Assessment
This issue has not been assessed yet.