Description
github.com/huandu/facebook is a Go package that fully supports the Facebook Graph API with file upload, batch request and marketing API. access_token can be exposed in error message on fail in HTTP request. This issue has been patched in version 2.7.2.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-1387 | github.com/huandu/facebook is a Go package that fully supports the Facebook Graph API with file upload, batch request and marketing API. access_token can be exposed in error message on fail in HTTP request. This issue has been patched in version 2.7.2. |
Github GHSA |
GHSA-3f65-m234-9mxr | github.com/huandu/facebook may expose access_token in error message. |
References
History
No history.
Status: PUBLISHED
Assigner: GitHub_M
Published:
Updated: 2024-08-02T03:07:46.857Z
Reserved: 2024-05-14T15:39:41.785Z
Link: CVE-2024-35232
Updated: 2024-05-28T15:10:40.826Z
Status : Deferred
Published: 2024-05-24T21:15:59.450
Modified: 2026-04-15T00:35:42.020
Link: CVE-2024-35232
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD
Github GHSA