Sonic
by Go Sonic
Source repositories
CVEs (2)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2024-21418 | Hig | 0.51 | 7.8 | 0.01 | Mar 12, 2024 | Software for Open Networking in the Cloud (SONiC) Elevation of Privilege Vulnerability | ||
| CVE-2025-15414 | Med | 0.31 | 4.7 | 0.00 | Jan 1, 2026 | A flaw has been found in go-sonic sonic up to 1.1.4. The affected element is the function FetchTheme of the file service/theme/git_fetcher.go of the component Theme Fetching API. Executing a manipulation of the argument uri can lead to server-side request forgery. The attack may… |
- risk 0.51cvss 7.8epss 0.01
Software for Open Networking in the Cloud (SONiC) Elevation of Privilege Vulnerability
- risk 0.31cvss 4.7epss 0.00
A flaw has been found in go-sonic sonic up to 1.1.4. The affected element is the function FetchTheme of the file service/theme/git_fetcher.go of the component Theme Fetching API. Executing a manipulation of the argument uri can lead to server-side request forgery. The attack may…