{"id":"GO-2026-6585","summary":"Klever-Go: Elasticsearch bulk / painless injection via on-chain account name -\u003e explorer/indexer data forgery in github.com/klever-io/klever-go","details":"Klever-Go: Elasticsearch bulk / painless injection via on-chain account name -\u003e explorer/indexer data forgery in github.com/klever-io/klever-go","aliases":["CVE-2026-82409","GHSA-7c7c-373r-gfjj"],"modified":"2026-10-01T20:45:15.080816828Z","published":"2026-10-01T20:23:38Z","database_specific":{"url":"https://pkg.go.dev/vuln/GO-2026-6585","review_status":"UNREVIEWED"},"references":[{"type":"ADVISORY","url":"https://github.com/klever-io/klever-go/security/advisories/GHSA-7c7c-373r-gfjj"},{"type":"FIX","url":"https://github.com/klever-io/klever-go/commit/f00366768b24be18fa7ae9de2e1905caa8b350af"},{"type":"FIX","url":"https://github.com/klever-io/klever-go/commit/f54ea730cc80a3ba4f906586a7d221b281548190"},{"type":"WEB","url":"https://github.com/klever-io/klever-go/releases/tag/v1.7.20"}],"affected":[{"package":{"name":"github.com/klever-io/klever-go","ecosystem":"Go","purl":"pkg:golang/github.com/klever-io/klever-go"},"ranges":[{"type":"SEMVER","events":[{"introduced":"0"},{"fixed":"1.7.20"}]}],"ecosystem_specific":{},"database_specific":{"source":"https://vuln.go.dev/ID/GO-2026-6585.json"}}],"schema_version":"1.9.0"}