Количество 105
Количество 105
ELSA-2024-11216
ELSA-2024-11216: containernetworking-plugins security update (MODERATE)
BDU:2024-07025
Уязвимость функции Decoder.Decode языка программирования Go, позволяющая нарушителю вызвать отказ в обслуживании
SUSE-SU-2025:0429-1
Security update for govulncheck-vulndb
CVE-2024-45336
The HTTP client drops sensitive headers after following a cross-domain redirect. For example, a request to a.com/ containing an Authorization header which is redirected to b.com/ will not send that header to b.com. In the event that the client received a subsequent same-domain redirect, however, the sensitive headers would be restored. For example, a chain of redirects from a.com/, to b.com/1, and finally to b.com/2 would incorrectly send the Authorization header to b.com/2.
CVE-2024-45336
The HTTP client drops sensitive headers after following a cross-domain redirect. For example, a request to a.com/ containing an Authorization header which is redirected to b.com/ will not send that header to b.com. In the event that the client received a subsequent same-domain redirect, however, the sensitive headers would be restored. For example, a chain of redirects from a.com/, to b.com/1, and finally to b.com/2 would incorrectly send the Authorization header to b.com/2.
CVE-2024-45336
The HTTP client drops sensitive headers after following a cross-domain redirect. For example, a request to a.com/ containing an Authorization header which is redirected to b.com/ will not send that header to b.com. In the event that the client received a subsequent same-domain redirect, however, the sensitive headers would be restored. For example, a chain of redirects from a.com/, to b.com/1, and finally to b.com/2 would incorrectly send the Authorization header to b.com/2.
CVE-2024-45336
Sensitive headers incorrectly sent after cross-domain redirect in net/http
CVE-2024-45336
The HTTP client drops sensitive headers after following a cross-domain ...
RLSA-2024:9473
Important: grafana security update
RLSA-2024:7262
Important: osbuild-composer security update
ELSA-2024-9473
ELSA-2024-9473: grafana security update (IMPORTANT)
ELSA-2024-7262
ELSA-2024-7262: osbuild-composer security update (IMPORTANT)
SUSE-SU-2024:3937-1
Security update for go1.23-openssl
SUSE-SU-2024:3809-1
Security update for go1.21-openssl
SUSE-SU-2024:3773-1
Security update for go1.23-openssl
SUSE-SU-2024:3459-1
Security update for kubernetes1.24
SUSE-SU-2024:3458-1
Security update for kubernetes1.24
SUSE-SU-2024:3457-1
Security update for kubernetes1.25
SUSE-SU-2024:3456-1
Security update for kubernetes1.26
SUSE-SU-2024:3455-1
Security update for kubernetes1.27
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
ELSA-2024-11216 ELSA-2024-11216: containernetworking-plugins security update (MODERATE) | около 1 года назад | |||
BDU:2024-07025 Уязвимость функции Decoder.Decode языка программирования Go, позволяющая нарушителю вызвать отказ в обслуживании | CVSS3: 7.5 | 0% Низкий | больше 1 года назад | |
SUSE-SU-2025:0429-1 Security update for govulncheck-vulndb | 12 месяцев назад | |||
CVE-2024-45336 The HTTP client drops sensitive headers after following a cross-domain redirect. For example, a request to a.com/ containing an Authorization header which is redirected to b.com/ will not send that header to b.com. In the event that the client received a subsequent same-domain redirect, however, the sensitive headers would be restored. For example, a chain of redirects from a.com/, to b.com/1, and finally to b.com/2 would incorrectly send the Authorization header to b.com/2. | CVSS3: 6.1 | 0% Низкий | около 1 года назад | |
CVE-2024-45336 The HTTP client drops sensitive headers after following a cross-domain redirect. For example, a request to a.com/ containing an Authorization header which is redirected to b.com/ will not send that header to b.com. In the event that the client received a subsequent same-domain redirect, however, the sensitive headers would be restored. For example, a chain of redirects from a.com/, to b.com/1, and finally to b.com/2 would incorrectly send the Authorization header to b.com/2. | CVSS3: 5.9 | 0% Низкий | около 1 года назад | |
CVE-2024-45336 The HTTP client drops sensitive headers after following a cross-domain redirect. For example, a request to a.com/ containing an Authorization header which is redirected to b.com/ will not send that header to b.com. In the event that the client received a subsequent same-domain redirect, however, the sensitive headers would be restored. For example, a chain of redirects from a.com/, to b.com/1, and finally to b.com/2 would incorrectly send the Authorization header to b.com/2. | CVSS3: 6.1 | 0% Низкий | около 1 года назад | |
CVE-2024-45336 Sensitive headers incorrectly sent after cross-domain redirect in net/http | CVSS3: 6.1 | 0% Низкий | 12 месяцев назад | |
CVE-2024-45336 The HTTP client drops sensitive headers after following a cross-domain ... | CVSS3: 6.1 | 0% Низкий | около 1 года назад | |
RLSA-2024:9473 Important: grafana security update | 11 месяцев назад | |||
RLSA-2024:7262 Important: osbuild-composer security update | больше 1 года назад | |||
ELSA-2024-9473 ELSA-2024-9473: grafana security update (IMPORTANT) | около 1 года назад | |||
ELSA-2024-7262 ELSA-2024-7262: osbuild-composer security update (IMPORTANT) | больше 1 года назад | |||
SUSE-SU-2024:3937-1 Security update for go1.23-openssl | около 1 года назад | |||
SUSE-SU-2024:3809-1 Security update for go1.21-openssl | больше 1 года назад | |||
SUSE-SU-2024:3773-1 Security update for go1.23-openssl | больше 1 года назад | |||
SUSE-SU-2024:3459-1 Security update for kubernetes1.24 | больше 1 года назад | |||
SUSE-SU-2024:3458-1 Security update for kubernetes1.24 | больше 1 года назад | |||
SUSE-SU-2024:3457-1 Security update for kubernetes1.25 | больше 1 года назад | |||
SUSE-SU-2024:3456-1 Security update for kubernetes1.26 | больше 1 года назад | |||
SUSE-SU-2024:3455-1 Security update for kubernetes1.27 | больше 1 года назад |
Уязвимостей на страницу