PoCHub.io
  • Home
  • About
By SerialWaffle — 07 Mar 2025

CVE-2018-6574

Description: Go before 1.8.7, Go 1.9.x before 1.9.4, and Go 1.10 pre-releases before Go 1.10rc2 allow "go get" remote command execution during source code build, by leveraging the gcc or clang plugin feature, because -fplugin= and -plugin= arguments were not blocked.

Link: Visit the GitHub Repository

Language: Go

Owner: elw0od

Stars: 0

Forks: 0

Previous issue

CVE-2019-7214

Next issue

CVE-2024-45519

PoCHub.io © 2025
  • Sign up
Powered by Ghost