{"schema_version":"1.7.3","id":"GO-2025-3462","published":"2025-03-03T16:11:01Z","modified":"2026-02-04T03:37:42.410613Z","aliases":["CVE-2025-1243","GHSA-q9w6-cwj4-gf4p"],"related":["CGA-pfq8-pjj3-93j4"],"summary":"Unencrypted transmission in Temporal api-go library in go.temporal.io/api","details":"Unencrypted transmission in Temporal api-go library in go.temporal.io/api","affected":[{"package":{"name":"go.temporal.io/api","ecosystem":"Go","purl":"pkg:golang/go.temporal.io/api"},"ranges":[{"type":"SEMVER","events":[{"introduced":"0"},{"fixed":"1.44.1"}]}],"ecosystem_specific":{"imports":[{"path":"go.temporal.io/api/proxy","symbols":["NewPayloadVisitorInterceptor"]}]},"database_specific":{"source":"https://vuln.go.dev/ID/GO-2025-3462.json"}}],"references":[{"type":"ADVISORY","url":"https://github.com/advisories/GHSA-q9w6-cwj4-gf4p"},{"type":"WEB","url":"https://github.com/temporalio/api-go/commit/dad8b169ada911d3778e070484d1ae78a58bd22b"},{"type":"WEB","url":"https://github.com/temporalio/api-go/releases/tag/v1.44.1"},{"type":"WEB","url":"https://temporal.io/blog/announcing-a-new-operation-workflow-update"}],"database_specific":{"review_status":"REVIEWED","url":"https://pkg.go.dev/vuln/GO-2025-3462"}}