Hello. See ${URL} for the upstream bugreport. Release notes for 0.12.x and 0.13.x series with this vulnerability fixed: https://github.com/syncthing/syncthing/releases/tag/v0.12.25 https://github.com/syncthing/syncthing/releases/tag/v0.13.2 Fix for 0.12.x (included in 0.12.25): https://github.com/syncthing/syncthing/commit/4a228697cdc213b46ef3755c653bb7e9967248ae Fix for 0.13.x (included in 0.13.2): https://github.com/syncthing/syncthing/commit/bf7fcc612d79133372b3d663fe0639a403e5467c
*** Bug 583666 has been marked as a duplicate of this bug. ***
Bumped to 0.12.25, thanks for the quick report!
(I also removed the vulnerable versions from the tree.)
(In reply to Dirkjan Ochtman from comment #3) > (I also removed the vulnerable versions from the tree.) Thanks, closing