Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 28

Количество 28

suse-cvrf логотип

SUSE-SU-2025:0281-1

больше 1 года назад

Security update for go1.22

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:0280-1

больше 1 года назад

Security update for go1.23

EPSS: Низкий
rocky логотип

RLSA-2025:3772

около 1 года назад

Moderate: go-toolset:rhel8 security update

EPSS: Низкий
oracle-oval логотип

ELSA-2025-3772

больше 1 года назад

ELSA-2025-3772: go-toolset:ol8 security update (MODERATE)

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:1555-1

около 1 года назад

Security update for go1.22-openssl

EPSS: Низкий
rocky логотип

RLSA-2025:7466

10 месяцев назад

Moderate: delve and golang security update

EPSS: Низкий
oracle-oval логотип

ELSA-2025-7466

около 1 года назад

ELSA-2025-7466: delve and golang security update (MODERATE)

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:0285-1

больше 1 года назад

Security update for go1.24

EPSS: Низкий
redos логотип

ROS-20250212-16

больше 1 года назад

Множественные уязвимости golang

CVSS3: 6.1
EPSS: Низкий
rocky логотип

RLSA-2025:3773

около 1 года назад

Important: delve and golang security update

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:01731-1

около 1 года назад

Security update for go1.23-openssl

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:03159-1

11 месяцев назад

Security update for go1.23-openssl

EPSS: Низкий
ubuntu логотип

CVE-2024-45341

больше 1 года назад

A certificate with a URI which has a IPv6 address with a zone ID may incorrectly satisfy a URI name constraint that applies to the certificate chain. Certificates containing URIs are not permitted in the web PKI, so this only affects users of private PKIs which make use of URIs.

CVSS3: 6.1
EPSS: Низкий
redhat логотип

CVE-2024-45341

больше 1 года назад

A certificate with a URI which has a IPv6 address with a zone ID may incorrectly satisfy a URI name constraint that applies to the certificate chain. Certificates containing URIs are not permitted in the web PKI, so this only affects users of private PKIs which make use of URIs.

CVSS3: 4.2
EPSS: Низкий
nvd логотип

CVE-2024-45341

больше 1 года назад

A certificate with a URI which has a IPv6 address with a zone ID may incorrectly satisfy a URI name constraint that applies to the certificate chain. Certificates containing URIs are not permitted in the web PKI, so this only affects users of private PKIs which make use of URIs.

CVSS3: 6.1
EPSS: Низкий
msrc логотип

CVE-2024-45341

8 месяцев назад

Usage of IPv6 zone IDs can bypass URI name constraints in crypto/x509

CVSS3: 6.1
EPSS: Низкий
debian логотип

CVE-2024-45341

больше 1 года назад

A certificate with a URI which has a IPv6 address with a zone ID may i ...

CVSS3: 6.1
EPSS: Низкий
ubuntu логотип

CVE-2024-45336

больше 1 года назад

The HTTP client drops sensitive headers after following a cross-domain redirect. For example, a request to a.com/ containing an Authorization header which is redirected to b.com/ will not send that header to b.com. In the event that the client received a subsequent same-domain redirect, however, the sensitive headers would be restored. For example, a chain of redirects from a.com/, to b.com/1, and finally to b.com/2 would incorrectly send the Authorization header to b.com/2.

CVSS3: 6.1
EPSS: Низкий
redhat логотип

CVE-2024-45336

больше 1 года назад

The HTTP client drops sensitive headers after following a cross-domain redirect. For example, a request to a.com/ containing an Authorization header which is redirected to b.com/ will not send that header to b.com. In the event that the client received a subsequent same-domain redirect, however, the sensitive headers would be restored. For example, a chain of redirects from a.com/, to b.com/1, and finally to b.com/2 would incorrectly send the Authorization header to b.com/2.

CVSS3: 5.9
EPSS: Низкий
nvd логотип

CVE-2024-45336

больше 1 года назад

The HTTP client drops sensitive headers after following a cross-domain redirect. For example, a request to a.com/ containing an Authorization header which is redirected to b.com/ will not send that header to b.com. In the event that the client received a subsequent same-domain redirect, however, the sensitive headers would be restored. For example, a chain of redirects from a.com/, to b.com/1, and finally to b.com/2 would incorrectly send the Authorization header to b.com/2.

CVSS3: 6.1
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
suse-cvrf логотип
SUSE-SU-2025:0281-1

Security update for go1.22

больше 1 года назад
suse-cvrf логотип
SUSE-SU-2025:0280-1

Security update for go1.23

больше 1 года назад
rocky логотип
RLSA-2025:3772

Moderate: go-toolset:rhel8 security update

около 1 года назад
oracle-oval логотип
ELSA-2025-3772

ELSA-2025-3772: go-toolset:ol8 security update (MODERATE)

больше 1 года назад
suse-cvrf логотип
SUSE-SU-2025:1555-1

Security update for go1.22-openssl

около 1 года назад
rocky логотип
RLSA-2025:7466

Moderate: delve and golang security update

10 месяцев назад
oracle-oval логотип
ELSA-2025-7466

ELSA-2025-7466: delve and golang security update (MODERATE)

около 1 года назад
suse-cvrf логотип
SUSE-SU-2025:0285-1

Security update for go1.24

больше 1 года назад
redos логотип
ROS-20250212-16

Множественные уязвимости golang

CVSS3: 6.1
больше 1 года назад
rocky логотип
RLSA-2025:3773

Important: delve and golang security update

около 1 года назад
suse-cvrf логотип
SUSE-SU-2025:01731-1

Security update for go1.23-openssl

около 1 года назад
suse-cvrf логотип
SUSE-SU-2025:03159-1

Security update for go1.23-openssl

11 месяцев назад
ubuntu логотип
CVE-2024-45341

A certificate with a URI which has a IPv6 address with a zone ID may incorrectly satisfy a URI name constraint that applies to the certificate chain. Certificates containing URIs are not permitted in the web PKI, so this only affects users of private PKIs which make use of URIs.

CVSS3: 6.1
0%
Низкий
больше 1 года назад
redhat логотип
CVE-2024-45341

A certificate with a URI which has a IPv6 address with a zone ID may incorrectly satisfy a URI name constraint that applies to the certificate chain. Certificates containing URIs are not permitted in the web PKI, so this only affects users of private PKIs which make use of URIs.

CVSS3: 4.2
0%
Низкий
больше 1 года назад
nvd логотип
CVE-2024-45341

A certificate with a URI which has a IPv6 address with a zone ID may incorrectly satisfy a URI name constraint that applies to the certificate chain. Certificates containing URIs are not permitted in the web PKI, so this only affects users of private PKIs which make use of URIs.

CVSS3: 6.1
0%
Низкий
больше 1 года назад
msrc логотип
CVE-2024-45341

Usage of IPv6 zone IDs can bypass URI name constraints in crypto/x509

CVSS3: 6.1
0%
Низкий
8 месяцев назад
debian логотип
CVE-2024-45341

A certificate with a URI which has a IPv6 address with a zone ID may i ...

CVSS3: 6.1
0%
Низкий
больше 1 года назад
ubuntu логотип
CVE-2024-45336

The HTTP client drops sensitive headers after following a cross-domain redirect. For example, a request to a.com/ containing an Authorization header which is redirected to b.com/ will not send that header to b.com. In the event that the client received a subsequent same-domain redirect, however, the sensitive headers would be restored. For example, a chain of redirects from a.com/, to b.com/1, and finally to b.com/2 would incorrectly send the Authorization header to b.com/2.

CVSS3: 6.1
1%
Низкий
больше 1 года назад
redhat логотип
CVE-2024-45336

The HTTP client drops sensitive headers after following a cross-domain redirect. For example, a request to a.com/ containing an Authorization header which is redirected to b.com/ will not send that header to b.com. In the event that the client received a subsequent same-domain redirect, however, the sensitive headers would be restored. For example, a chain of redirects from a.com/, to b.com/1, and finally to b.com/2 would incorrectly send the Authorization header to b.com/2.

CVSS3: 5.9
1%
Низкий
больше 1 года назад
nvd логотип
CVE-2024-45336

The HTTP client drops sensitive headers after following a cross-domain redirect. For example, a request to a.com/ containing an Authorization header which is redirected to b.com/ will not send that header to b.com. In the event that the client received a subsequent same-domain redirect, however, the sensitive headers would be restored. For example, a chain of redirects from a.com/, to b.com/1, and finally to b.com/2 would incorrectly send the Authorization header to b.com/2.

CVSS3: 6.1
1%
Низкий
больше 1 года назад

Уязвимостей на страницу