In GitHub Security Advisory [GHSA-9vm3-r8gq-cr6x](https://github.com/advisories/GHSA-9vm3-r8gq-cr6x), there is a vulnerability in the following Go packages or modules: | Unit | Fixed | Vulnerable Ranges | | - | - | - | | [github.com/casdoor/casdoor](https://pkg.go.dev/github.com/casdoor/casdoor) | 1.103.1 | < 1.103.1 | See [doc/triage.md](https://github.com/golang/vulndb/blob/master/doc/triage.md) for instructions on how to triage this report. ``` modules: - module: TODO versions: - fixed: 1.103.1 packages: - package: github.com/casdoor/casdoor description: Casdoor v1.97.3 was discovered to contain an arbitrary file write vulnerability via the fullFilePath parameter at /api/upload-resource. cves: - CVE-2022-38638 ghsas: - GHSA-9vm3-r8gq-cr6x ```