Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

msrc логотип

CVE-2025-22870

Опубликовано: 27 мар. 2025
Источник: msrc
CVSS3: 4.4
EPSS Низкий

Описание

HTTP Proxy bypass using IPv6 Zone IDs in golang.org/x/net

EPSS

Процентиль: 3%
0.00018
Низкий

4.4 Medium

CVSS3

Связанные уязвимости

CVSS3: 4.4
ubuntu
8 месяцев назад

Matching of hosts against proxy patterns can improperly treat an IPv6 zone ID as a hostname component. For example, when the NO_PROXY environment variable is set to "*.example.com", a request to "[::1%25.example.com]:80` will incorrectly match and not be proxied.

CVSS3: 4.4
redhat
8 месяцев назад

Matching of hosts against proxy patterns can improperly treat an IPv6 zone ID as a hostname component. For example, when the NO_PROXY environment variable is set to "*.example.com", a request to "[::1%25.example.com]:80` will incorrectly match and not be proxied.

CVSS3: 4.4
nvd
8 месяцев назад

Matching of hosts against proxy patterns can improperly treat an IPv6 zone ID as a hostname component. For example, when the NO_PROXY environment variable is set to "*.example.com", a request to "[::1%25.example.com]:80` will incorrectly match and not be proxied.

CVSS3: 4.4
debian
8 месяцев назад

Matching of hosts against proxy patterns can improperly treat an IPv6 ...

suse-cvrf
7 месяцев назад

Security update for skopeo

EPSS

Процентиль: 3%
0.00018
Низкий

4.4 Medium

CVSS3