CVE-2025-47907

Cancelling a query (e.g. by cancelling the context passed to one of the query methods) during a call to the Scan method of the returned Rows can result in unexpected results if other queries are being made in parallel. This can result in a race condition that may overwrite the expected results with those of another query, causing the call to Scan to return either unexpected results from the other query or an error.

Add a comment

Mark as False Positive
Comment will be synced with https://github.com/l3montree-dev/devguard-action/issues/174
Last calculated at:

Affected component

Logo von golang stdlib

Installed version:
1.23.1
Fixed in:
v1.23.12

Quick Fix

Update all Dependencies
Update only stdlib

Management decisions across the organization

Copyright © 2025 L3montree GmbH and the DevGuard Contributors. All rights reserved. Version 71cda54d19c6900d5d185b8bc7c11608a8a65bac