CVE-2023-33170 false positive in net 6.0.20 app #4822
Closed
Ismael-Pep
started this conversation in
False Detection
Replies: 2 comments
-
Hi, I raised this issue yesterday, please see the response here: #4818 Thanks, Hugh |
Beta Was this translation helpful? Give feedback.
0 replies
-
I have the same issue |
Beta Was this translation helpful? Give feedback.
0 replies
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
-
IDs
CVE-2023-33170
Description
CVE-2023-33170 is resolved in the net6.0.20, the installed version is 6.0.20 but a vulnerability (CVE-2023-33170) is reported.
GHSA-25c8-p796-jg6r reports that the 6.0.20 is patch
Other web pages where it says the vulnerability is path:
https://devblogs.microsoft.com/dotnet/july-2023-updates/
https://cve.report/CVE-2023-33170
Reproduction Steps
Target
Container Image
Scanner
Vulnerability
Target OS
No response
Debug Output
Version
Checklist
-f json
that shows data sources and confirmed that the security advisory in data sources was correctBeta Was this translation helpful? Give feedback.
All reactions