Skip to content

Conversation

@WilliamCollishaw
Copy link

Updates

  • Affected products
  • Summary

Comments
Adding affected products section

This was introduced in Go 1.25.0 (source - golang/go#75054)
This was fixed in the patch version 1.25.1 (source - golang/go#75160 & https://github.com/golang/go/issues?q=milestone%3AGo1.25.1%20label%3ACherryPickApproved)

@github-actions github-actions bot changed the base branch from main to WilliamCollishaw/advisory-improvement-6342 October 23, 2025 01:00
@yhidad31
Copy link

Hi @WilliamCollishaw , thanks for the contribution. Unfortunately we can't accept this change because the affected product net/http is not a Go module. Thank you for helping improve the database.

@yhidad31 yhidad31 closed this Oct 24, 2025
@github-actions github-actions bot deleted the WilliamCollishaw-GHSA-8pjc-487g-w6p2 branch October 24, 2025 00:07
@WilliamCollishaw
Copy link
Author

@yhidad31 is there any way to store the affected/fixed versions for vulnerabilities in the Go standard library in this Database?

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants