Affected by GO-2023-1795
and 2 other vulnerabilities
GO-2023-1795: malformed proposed intoto entries can cause a panic in github.com/sigstore/rekor
GO-2026-4354: Rekor's COSE v0.0.1 entry type nil pointer dereference in Canonicalize via empty Message in github.com/sigstore/rekor
GO-2026-4355: Rekor affected by Server-Side Request Forgery (SSRF) via provided public key URL in github.com/sigstore/rekor
package
Version:
v1.1.1
Opens a new window with list of versions in this module.
Published: May 3, 2023
License: Apache-2.0
Opens a new window with license information.
Imports: 5
Opens a new window with list of imports.
Imported by: 0
Opens a new window with list of known importers.
Documentation
¶
Source Files
¶
Click to show internal directories.
Click to hide internal directories.