Vulnerability Report: GO-2025-3599
- CVE-2025-32025, GHSA-fmhh-rw3h-785m
- Affects: github.com/bep/imagemeta
- Published: Apr 09, 2025
bep/imagemeta allows a potentially large memory allocation in PNG and WebP parsing in github.com/bep/imagemeta
For detailed information about this vulnerability, visit https://github.com/bep/imagemeta/security/advisories/GHSA-fmhh-rw3h-785m or https://nvd.nist.gov/vuln/detail/CVE-2025-32025.
Affected Packages
-
PathVersionsSymbols
Aliases
References
- https://github.com/bep/imagemeta/security/advisories/GHSA-fmhh-rw3h-785m
- https://nvd.nist.gov/vuln/detail/CVE-2025-32025
- https://github.com/bep/imagemeta/commit/ee0de9b029f4e82106729f69559f27c9a404229d
- https://vuln.go.dev/ID/GO-2025-3599.json
Feedback
See anything missing or incorrect?
Suggest an edit to this report.