golang.org/x/net
< 0.17.0 security vulnerability #3755
Closed
Description
Just a heads up to inform you that prior to version 0.17.0, golang.org/x/net
is subject to the following vulnerability:
- CVE-2023-39325
- net/http, x/net/http2: rapid stream resets can cause excessive work (CVE-2023-39325) golang/go#63417
Looks like the pull request has already been made: #3754
Any maintainer could look into this please? 🙏
Thanks!