Skip to content

CVE-2023-36308 - Improper Input Validation vulnerability in github.com/disintegration/imaging #179

@msaad-axon

Description

@msaad-axon

Description:
A recent security scan has raised this cve as medium, i would appreciate it if someone could take a look at this, thank you.

''Affected versions of this package are vulnerable to Improper Input Validation via scan function of scanner.go file, allowing an attacker to submit a crafted TIFF file.''
https://nvd.nist.gov/vuln/detail/CVE-2023-36308

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions