-
CVSS Score
-| Package Name | Ecosystem | Vulnerable Versions | First Patched Version |
|---|---|---|---|
| github.com/hashicorp/consul | go | < 1.11.9 | 1.11.9 |
| github.com/hashicorp/consul | go | >= 1.12.0, < 1.12.5 | 1.12.5 |
| github.com/hashicorp/consul | go | >= 1.13.0, < 1.13.2 | 1.13.2 |
The vulnerability stems from improper SAN URI validation in two critical CSR processing functions: