Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-5xvv-4r9w-mw22

Опубликовано: 10 мар. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 6.5

Описание

Missing validation in DAST analyzer affecting all versions from 1.11.0 prior to 3.0.32, allows custom request headers to be sent with every request, regardless of the host.

Missing validation in DAST analyzer affecting all versions from 1.11.0 prior to 3.0.32, allows custom request headers to be sent with every request, regardless of the host.

EPSS

Процентиль: 42%
0.00199
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-20

Связанные уязвимости

CVSS3: 7.7
ubuntu
почти 3 года назад

Missing validation in DAST analyzer affecting all versions from 1.11.0 prior to 3.0.32, allows custom request headers to be sent with every request, regardless of the host.

CVSS3: 7.7
nvd
почти 3 года назад

Missing validation in DAST analyzer affecting all versions from 1.11.0 prior to 3.0.32, allows custom request headers to be sent with every request, regardless of the host.

CVSS3: 7.7
debian
почти 3 года назад

Missing validation in DAST analyzer affecting all versions from 1.11.0 ...

EPSS

Процентиль: 42%
0.00199
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-20