{"schema_version":"1.7.5","id":"GO-2026-4316","published":"2026-01-23T02:28:11Z","modified":"2026-08-07T08:11:52.690351852Z","aliases":["CVE-2025-69725","GHSA-mqqf-5wvp-8fh8"],"related":["CGA-76m3-5fxv-q2q2"],"summary":"Open redirect vulnerability in the RedirectSlashes middleware in github.com/go-chi/chi","details":"Open redirect vulnerability in the RedirectSlashes middleware in github.com/go-chi/chi","affected":[{"package":{"name":"github.com/go-chi/chi","ecosystem":"Go","purl":"pkg:golang/github.com/go-chi/chi"},"ranges":[{"type":"SEMVER","events":[{"introduced":"0"}]}],"ecosystem_specific":{},"database_specific":{"source":"https://vuln.go.dev/ID/GO-2026-4316.json"}},{"package":{"name":"github.com/go-chi/chi/v2","ecosystem":"Go","purl":"pkg:golang/github.com/go-chi/chi/v2"},"ranges":[{"type":"SEMVER","events":[{"introduced":"0"}]}],"ecosystem_specific":{},"database_specific":{"source":"https://vuln.go.dev/ID/GO-2026-4316.json"}},{"package":{"name":"github.com/go-chi/chi/v3","ecosystem":"Go","purl":"pkg:golang/github.com/go-chi/chi/v3"},"ranges":[{"type":"SEMVER","events":[{"introduced":"0"}]}],"ecosystem_specific":{},"database_specific":{"source":"https://vuln.go.dev/ID/GO-2026-4316.json"}},{"package":{"name":"github.com/go-chi/chi/v4","ecosystem":"Go","purl":"pkg:golang/github.com/go-chi/chi/v4"},"ranges":[{"type":"SEMVER","events":[{"introduced":"0"}]}],"ecosystem_specific":{},"database_specific":{"source":"https://vuln.go.dev/ID/GO-2026-4316.json"}},{"package":{"name":"github.com/go-chi/chi/v5","ecosystem":"Go","purl":"pkg:golang/github.com/go-chi/chi/v5"},"ranges":[{"type":"SEMVER","events":[{"introduced":"5.2.2"},{"fixed":"5.2.4"}]}],"ecosystem_specific":{"imports":[{"path":"github.com/go-chi/chi/v5/middleware","symbols":["RedirectSlashes"]}]},"database_specific":{"source":"https://vuln.go.dev/ID/GO-2026-4316.json"}}],"references":[{"type":"ADVISORY","url":"https://github.com/go-chi/chi/security/advisories/GHSA-mqqf-5wvp-8fh8"},{"type":"FIX","url":"https://github.com/go-chi/chi/commit/6eb35881c0e438ffb663ddbad3a61babaa5e5d8a"},{"type":"REPORT","url":"https://github.com/go-chi/chi/issues/1037"}],"database_specific":{"review_status":"REVIEWED","url":"https://pkg.go.dev/vuln/GO-2026-4316"}}