Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 28

Количество 28

msrc логотип

CVE-2024-45336

больше 1 года назад

Sensitive headers incorrectly sent after cross-domain redirect in net/http

CVSS3: 6.1
EPSS: Низкий
debian логотип

CVE-2024-45336

больше 1 года назад

The HTTP client drops sensitive headers after following a cross-domain ...

CVSS3: 6.1
EPSS: Низкий
github логотип

GHSA-3f6r-qh9c-x6mm

больше 1 года назад

A certificate with a URI which has a IPv6 address with a zone ID may incorrectly satisfy a URI name constraint that applies to the certificate chain. Certificates containing URIs are not permitted in the web PKI, so this only affects users of private PKIs which make use of URIs.

CVSS3: 6.1
EPSS: Низкий
fstec логотип

BDU:2025-03335

больше 1 года назад

Уязвимость языка программирования Golang, связанная с неправильной проверкой входных данных, позволяющая нарушителю обойти внедренные ограничения безопасности

CVSS3: 6.1
EPSS: Низкий
github логотип

GHSA-7wrw-r4p8-38rx

больше 1 года назад

The HTTP client drops sensitive headers after following a cross-domain redirect. For example, a request to a.com/ containing an Authorization header which is redirected to b.com/ will not send that header to b.com. In the event that the client received a subsequent same-domain redirect, however, the sensitive headers would be restored. For example, a chain of redirects from a.com/, to b.com/1, and finally to b.com/2 would incorrectly send the Authorization header to b.com/2.

CVSS3: 6.1
EPSS: Низкий
fstec логотип

BDU:2025-02667

больше 1 года назад

Уязвимость языка программирования Golang, связанная с недостаточной защитой служебных данных, позволяющая нарушителю получить несанкционированный доступ к учетным данным

CVSS3: 6.1
EPSS: Низкий
rocky логотип

RLSA-2025:7592

10 месяцев назад

Important: yggdrasil security update

EPSS: Низкий
oracle-oval логотип

ELSA-2025-7592

около 1 года назад

ELSA-2025-7592: yggdrasil security update (IMPORTANT)

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
msrc логотип
CVE-2024-45336

Sensitive headers incorrectly sent after cross-domain redirect in net/http

CVSS3: 6.1
1%
Низкий
больше 1 года назад
debian логотип
CVE-2024-45336

The HTTP client drops sensitive headers after following a cross-domain ...

CVSS3: 6.1
1%
Низкий
больше 1 года назад
github логотип
GHSA-3f6r-qh9c-x6mm

A certificate with a URI which has a IPv6 address with a zone ID may incorrectly satisfy a URI name constraint that applies to the certificate chain. Certificates containing URIs are not permitted in the web PKI, so this only affects users of private PKIs which make use of URIs.

CVSS3: 6.1
0%
Низкий
больше 1 года назад
fstec логотип
BDU:2025-03335

Уязвимость языка программирования Golang, связанная с неправильной проверкой входных данных, позволяющая нарушителю обойти внедренные ограничения безопасности

CVSS3: 6.1
0%
Низкий
больше 1 года назад
github логотип
GHSA-7wrw-r4p8-38rx

The HTTP client drops sensitive headers after following a cross-domain redirect. For example, a request to a.com/ containing an Authorization header which is redirected to b.com/ will not send that header to b.com. In the event that the client received a subsequent same-domain redirect, however, the sensitive headers would be restored. For example, a chain of redirects from a.com/, to b.com/1, and finally to b.com/2 would incorrectly send the Authorization header to b.com/2.

CVSS3: 6.1
1%
Низкий
больше 1 года назад
fstec логотип
BDU:2025-02667

Уязвимость языка программирования Golang, связанная с недостаточной защитой служебных данных, позволяющая нарушителю получить несанкционированный доступ к учетным данным

CVSS3: 6.1
1%
Низкий
больше 1 года назад
rocky логотип
RLSA-2025:7592

Important: yggdrasil security update

10 месяцев назад
oracle-oval логотип
ELSA-2025-7592

ELSA-2025-7592: yggdrasil security update (IMPORTANT)

около 1 года назад

Уязвимостей на страницу