mirror of
https://github.com/fatedier/frp.git
synced 2026-05-15 08:05:49 -06:00
[GH-ISSUE #4706] 关于FRP-0.61.2版本当前依赖库存在的安全漏洞 #3716
Labels
No labels
In Progress
WIP
WaitingForInfo
bug
doc
duplicate
easy
enhancement
future
help wanted
invalid
lifecycle/stale
need-issue-template
need-usage-help
no plan
proposal
pull-request
question
todo
No milestone
No project
No assignees
1 participant
Notifications
Due date
No due date set.
Dependencies
No dependencies set.
Reference: github-starred/frp#3716
Loading…
Add table
Add a link
Reference in a new issue
No description provided.
Delete branch "%!s()"
Deleting a branch is permanent. Although the deleted branch may continue to exist for a short time before it actually gets removed, it CANNOT be undone in most cases. Continue?
Originally created by @YouZiFeiLe on GitHub (Mar 12, 2025).
Original GitHub issue: https://github.com/fatedier/frp/issues/4706
Bug Description
当前FRP-0.61.2版本多个依赖库存在安全漏洞
CVE-2024-45337
golang / golang.org/x/crypto / 0.30.0
CVE-2024-45338
golang / golang.org/x/net / 0.32.0
CVE-2025-22869
golang / golang.org/x/crypto / 0.30.0
CVE-2025-22868
golang / golang.org/x/oauth2 / 0.16.0
CVE-2025-27144
golang / github.com/go-jose/go-jose/v4 / 4.0.1
请对依赖库进行常规版本升级,谢谢
frpc Version
0.61.2
frps Version
0.61.2
System Architecture
linux/amd64
Configurations
请对依赖库进行常规版本升级,谢谢
Logs
No response
Steps to reproduce
...
Affected area
@github-actions[bot] commented on GitHub (Mar 27, 2025):
Issues go stale after 14d of inactivity. Stale issues rot after an additional 3d of inactivity and eventually close.