VDB

CVE-2022-29804

CVE-2022-29804 PUBLISHED

Incorrect conversion of certain invalid paths to valid, absolute paths in Clean in path/filepath before Go 1.17.11 and Go 1.18.3 on Windows allows potential directory traversal attack.

EPSS 0.05% · 15.4th percentile

Risk Scores

EPSS Score
0.05%
15.4th percentile

Affected Products

VendorProductVersions
Bitnamigolang0, 1.18.0
Bitnamigolang0, 1.18.0

Exploit Intelligence

Timeline

  • Jul 28, 2022 CVE Published
  • Aug 10, 2022 EPSS Score
  • Sep 25, 2022 EPSS Score
  • Nov 10, 2022 EPSS Score
  • Dec 27, 2022 EPSS Score
  • Feb 11, 2023 EPSS Score
  • Mar 29, 2023 EPSS Score
  • May 14, 2023 EPSS Score
  • Jun 29, 2023 EPSS Score
  • Aug 14, 2023 EPSS Score
  • Sep 30, 2023 EPSS Score
  • Nov 15, 2023 EPSS Score
Open in Interactive Console →
$ Console Community · 100/wk Open console ›