Loading HuntDB...

GHSA-j6m3-gc37-6r6q

GitHub Security Advisory

⚠ Unreviewed MODERATE Has CVE

Advisory Details

If errors returned from MarshalJSON methods contain user controlled data, they may be used to break the contextual auto-escaping behavior of the html/template package, allowing for subsequent actions to inject unexpected content into templates.

Related CVEs

Key Information

GHSA ID
GHSA-j6m3-gc37-6r6q
Published
March 6, 2024 12:31 AM
Last Modified
March 14, 2025 3:31 AM
CVSS Score
5.0 /10
Primary Ecosystem
Unknown
Primary Package
Unknown
GitHub Reviewed
✗ No

Dataset

Last updated: July 18, 2025 6:27 AM

Data from GitHub Advisory Database. This information is provided for research and educational purposes.