github.com/AlexxIT/go2rtc
Go3 known CVEs affecting this package
Aggregated from OSV, GitHub Security Advisories, NVD, and vendor advisories. Each CVE links to its full detail page with vendor advisories, patches, fixed versions, and remediation guidance.
CVEs affecting github.com/AlexxIT/go2rtcpage 1 of 1
- CVE-2024-29191MEDIUMCVSS 6.1EG 6.1fixed in 1.9.02024-04-04
gotortc is a camera streaming application. Versions 1.8.5 and prior are vulnerable to DOM-based cross-site scripting. The links page (`links.html`) appends the `src` GET parameter (`[0]`) in all of its links for 1-click previews. The conte…
- CVE-2024-29192HIGHCVSS 8.8EG 8.8fixed in 1.9.02024-04-04
gotortc is a camera streaming application. Versions 1.8.5 and prior are vulnerable to Cross-Site Request Forgery. The `/api/config` endpoint allows one to modify the existing configuration with user-supplied values. While the API is only a…
- CVE-2024-29193MEDIUMCVSS 6.1EG 6.1fixed in 1.9.02024-04-04
gotortc is a camera streaming application. Versions 1.8.5 and prior are vulnerable to DOM-based cross-site scripting. The index page (`index.html`) shows the available streams by fetching the API in the client side. Then, it uses `Object.e…
Check whether github.com/AlexxIT/go2rtc is used in your infrastructure
EchelonGraph scans your cloud and SBOMs to map every package to your actual deployments. See blast radius for github.com/AlexxIT/go2rtc CVEs against the assets you own.
Book a Demo →