Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 14

Количество 14

fstec логотип

BDU:2025-11599

12 месяцев назад

Уязвимость языка программирования Go, связанная с неправильной проверкой входных данных, позволяющая нарушителю обойти существующие ограничения безопасности

CVSS3: 5.3
EPSS: Низкий
redos логотип

ROS-20251014-11

10 месяцев назад

Уязвимость golang

CVSS3: 5.3
EPSS: Низкий
ubuntu логотип

CVE-2025-47910

10 месяцев назад

When using http.CrossOriginProtection, the AddInsecureBypassPattern method can unexpectedly bypass more requests than intended. CrossOriginProtection then skips validation, but forwards the original request path, which may be served by a different handler without the intended security protections.

CVSS3: 5.4
EPSS: Низкий
redhat логотип

CVE-2025-47910

10 месяцев назад

When using http.CrossOriginProtection, the AddInsecureBypassPattern method can unexpectedly bypass more requests than intended. CrossOriginProtection then skips validation, but forwards the original request path, which may be served by a different handler without the intended security protections.

CVSS3: 5.4
EPSS: Низкий
nvd логотип

CVE-2025-47910

10 месяцев назад

When using http.CrossOriginProtection, the AddInsecureBypassPattern method can unexpectedly bypass more requests than intended. CrossOriginProtection then skips validation, but forwards the original request path, which may be served by a different handler without the intended security protections.

CVSS3: 5.4
EPSS: Низкий
debian логотип

CVE-2025-47910

10 месяцев назад

When using http.CrossOriginProtection, the AddInsecureBypassPattern me ...

CVSS3: 5.4
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:03525-1

10 месяцев назад

Security update for go1.25-openssl

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:03524-1

10 месяцев назад

Security update for go1.25-openssl

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:03200-1

11 месяцев назад

Security update for go1.25

EPSS: Низкий
github логотип

GHSA-8pjc-487g-w6p2

10 месяцев назад

When using http.CrossOriginProtection, the AddInsecureBypassPattern method can unexpectedly bypass more requests than intended. CrossOriginProtection then skips validation, but forwards the original request path, which may be served by a different handler without the intended security protections.

CVSS3: 5.4
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:2643-1

около 1 месяца назад

Security update for aws-iam-authenticator

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2025:20157-1

8 месяцев назад

Security update for go1.25

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:0298-1

6 месяцев назад

Security update for go1.25-openssl

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:0297-1

6 месяцев назад

Security update for go1.25-openssl

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
fstec логотип
BDU:2025-11599

Уязвимость языка программирования Go, связанная с неправильной проверкой входных данных, позволяющая нарушителю обойти существующие ограничения безопасности

CVSS3: 5.3
0%
Низкий
12 месяцев назад
redos логотип
ROS-20251014-11

Уязвимость golang

CVSS3: 5.3
0%
Низкий
10 месяцев назад
ubuntu логотип
CVE-2025-47910

When using http.CrossOriginProtection, the AddInsecureBypassPattern method can unexpectedly bypass more requests than intended. CrossOriginProtection then skips validation, but forwards the original request path, which may be served by a different handler without the intended security protections.

CVSS3: 5.4
0%
Низкий
10 месяцев назад
redhat логотип
CVE-2025-47910

When using http.CrossOriginProtection, the AddInsecureBypassPattern method can unexpectedly bypass more requests than intended. CrossOriginProtection then skips validation, but forwards the original request path, which may be served by a different handler without the intended security protections.

CVSS3: 5.4
0%
Низкий
10 месяцев назад
nvd логотип
CVE-2025-47910

When using http.CrossOriginProtection, the AddInsecureBypassPattern method can unexpectedly bypass more requests than intended. CrossOriginProtection then skips validation, but forwards the original request path, which may be served by a different handler without the intended security protections.

CVSS3: 5.4
0%
Низкий
10 месяцев назад
debian логотип
CVE-2025-47910

When using http.CrossOriginProtection, the AddInsecureBypassPattern me ...

CVSS3: 5.4
0%
Низкий
10 месяцев назад
suse-cvrf логотип
SUSE-SU-2025:03525-1

Security update for go1.25-openssl

0%
Низкий
10 месяцев назад
suse-cvrf логотип
SUSE-SU-2025:03524-1

Security update for go1.25-openssl

0%
Низкий
10 месяцев назад
suse-cvrf логотип
SUSE-SU-2025:03200-1

Security update for go1.25

0%
Низкий
11 месяцев назад
github логотип
GHSA-8pjc-487g-w6p2

When using http.CrossOriginProtection, the AddInsecureBypassPattern method can unexpectedly bypass more requests than intended. CrossOriginProtection then skips validation, but forwards the original request path, which may be served by a different handler without the intended security protections.

CVSS3: 5.4
0%
Низкий
10 месяцев назад
suse-cvrf логотип
SUSE-SU-2026:2643-1

Security update for aws-iam-authenticator

около 1 месяца назад
suse-cvrf логотип
openSUSE-SU-2025:20157-1

Security update for go1.25

8 месяцев назад
suse-cvrf логотип
SUSE-SU-2026:0298-1

Security update for go1.25-openssl

6 месяцев назад
suse-cvrf логотип
SUSE-SU-2026:0297-1

Security update for go1.25-openssl

6 месяцев назад

Уязвимостей на страницу