CVE-2024-48909

LOW2.0EPSS 0.11%

SpiceDB calls to LookupResources using LookupResources2 with caveats may return context is missing when it is not in github.com/authzed/spicedb

Published: 10/14/2024Modified: 3/3/2026

Description

SpiceDB calls to LookupResources using LookupResources2 with caveats may return context is missing when it is not in github.com/authzed/spicedb

Affected packages (2)

CVSS scores

SourceVersionSeverityVector
osvCVSS 3.1LOW2.0CVSS:3.1/AV:N/AC:H/PR:H/UI:R/S:U/C:L/I:N/A:N

References (4)