Vulnerability Report: GO-2025-3468
- CVE-2025-24806, GHSA-m5mf-3963-4x26
- Affects: github.com/authelia/authelia, github.com/authelia/authelia/v4
- Published: Mar 03, 2025
- Unreviewed
Authelia applies regulation separately to Username-based logins to Email-based logins in github.com/authelia/authelia
For detailed information about this vulnerability, visit https://github.com/authelia/authelia/security/advisories/GHSA-m5mf-3963-4x26 or https://nvd.nist.gov/vuln/detail/CVE-2025-24806.
Affected Modules
-
PathGo Versions
-
all versions, no known fixed
-
before v4.38.19
Aliases
References
- https://github.com/authelia/authelia/security/advisories/GHSA-m5mf-3963-4x26
- https://nvd.nist.gov/vuln/detail/CVE-2025-24806
- https://github.com/authelia/authelia/commit/d4a54189aa6563912f9427b96dcb01eacafa785c
- https://vuln.go.dev/ID/GO-2025-3468.json
Feedback
This report is unreviewed. It was automatically generated from a third-party source and its details have not been verified by the Go team.
See anything missing or incorrect?
Suggest an edit to this report.