klzgrad / naiveproxy

Make a fortune quietly
BSD 3-Clause "New" or "Revised" License
6.31k stars 868 forks source link

CVE-2023-45288 (Caddy) #637

Closed Chilledheart closed 1 month ago

Chilledheart commented 1 month ago

cve-2023-45288 is fixed in go1.22.2(go1.21.9) https://go.dev/doc/devel/release#go1.22.2

see https://github.com/golang/go/issues/66298 (backport pr) caddy's prebuilt binaries are affected (https://github.com/caddyserver/caddy/issues/6220)