kraken contains an arbitrary file read vulnerability via component testfs.
{ "review_status": "REVIEWED", "url": "https://pkg.go.dev/vuln/GO-2023-1505" }
{ "imports": [ { "path": "github.com/uber/kraken/lib/backend/testfs", "symbols": [ "Server.Handler", "Server.downloadHandler" ] } ] }