-
CVSS Score
-The vulnerability stems from unsanitized insertion of user.username in multiple UI feedback mechanisms. The commit 24fe998 shows critical fixes:
| Package Name | Ecosystem | Vulnerable Versions | First Patched Version |
|---|---|---|---|
| github.com/gophish/gophish | go | < 0.8.0 | 0.9.0 |
Ongoing coverage of React2Shell