Логотип exploitDog
bind:"CVE-2024-45336" OR bind:"CVE-2024-45341"
Консоль
Логотип exploitDog

exploitDog

bind:"CVE-2024-45336" OR bind:"CVE-2024-45341"

Количество 23

Количество 23

suse-cvrf логотип

SUSE-SU-2025:0281-1

5 месяцев назад

Security update for go1.22

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:0280-1

5 месяцев назад

Security update for go1.23

EPSS: Низкий
redos логотип

ROS-20250212-16

4 месяца назад

Множественные уязвимости golang

CVSS3: 6.1
EPSS: Низкий
oracle-oval логотип

ELSA-2025-3772

2 месяца назад

ELSA-2025-3772: go-toolset:ol8 security update (MODERATE)

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:1555-1

около 1 месяца назад

Security update for go1.22-openssl

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:0285-1

5 месяцев назад

Security update for go1.24

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:01731-1

24 дня назад

Security update for go1.23-openssl

EPSS: Низкий
ubuntu логотип

CVE-2024-45341

5 месяцев назад

A certificate with a URI which has a IPv6 address with a zone ID may incorrectly satisfy a URI name constraint that applies to the certificate chain. Certificates containing URIs are not permitted in the web PKI, so this only affects users of private PKIs which make use of URIs.

CVSS3: 6.1
EPSS: Низкий
redhat логотип

CVE-2024-45341

5 месяцев назад

A certificate with a URI which has a IPv6 address with a zone ID may incorrectly satisfy a URI name constraint that applies to the certificate chain. Certificates containing URIs are not permitted in the web PKI, so this only affects users of private PKIs which make use of URIs.

CVSS3: 4.2
EPSS: Низкий
nvd логотип

CVE-2024-45341

5 месяцев назад

A certificate with a URI which has a IPv6 address with a zone ID may incorrectly satisfy a URI name constraint that applies to the certificate chain. Certificates containing URIs are not permitted in the web PKI, so this only affects users of private PKIs which make use of URIs.

CVSS3: 6.1
EPSS: Низкий
msrc логотип

CVE-2024-45341

4 месяца назад

CVSS3: 6.1
EPSS: Низкий
debian логотип

CVE-2024-45341

5 месяцев назад

A certificate with a URI which has a IPv6 address with a zone ID may i ...

CVSS3: 6.1
EPSS: Низкий
ubuntu логотип

CVE-2024-45336

5 месяцев назад

The HTTP client drops sensitive headers after following a cross-domain redirect. For example, a request to a.com/ containing an Authorization header which is redirected to b.com/ will not send that header to b.com. In the event that the client received a subsequent same-domain redirect, however, the sensitive headers would be restored. For example, a chain of redirects from a.com/, to b.com/1, and finally to b.com/2 would incorrectly send the Authorization header to b.com/2.

CVSS3: 6.1
EPSS: Низкий
redhat логотип

CVE-2024-45336

5 месяцев назад

The HTTP client drops sensitive headers after following a cross-domain redirect. For example, a request to a.com/ containing an Authorization header which is redirected to b.com/ will not send that header to b.com. In the event that the client received a subsequent same-domain redirect, however, the sensitive headers would be restored. For example, a chain of redirects from a.com/, to b.com/1, and finally to b.com/2 would incorrectly send the Authorization header to b.com/2.

CVSS3: 5.9
EPSS: Низкий
nvd логотип

CVE-2024-45336

5 месяцев назад

The HTTP client drops sensitive headers after following a cross-domain redirect. For example, a request to a.com/ containing an Authorization header which is redirected to b.com/ will not send that header to b.com. In the event that the client received a subsequent same-domain redirect, however, the sensitive headers would be restored. For example, a chain of redirects from a.com/, to b.com/1, and finally to b.com/2 would incorrectly send the Authorization header to b.com/2.

CVSS3: 6.1
EPSS: Низкий
msrc логотип

CVE-2024-45336

4 месяца назад

CVSS3: 6.1
EPSS: Низкий
debian логотип

CVE-2024-45336

5 месяцев назад

The HTTP client drops sensitive headers after following a cross-domain ...

CVSS3: 6.1
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:0429-1

4 месяца назад

Security update for govulncheck-vulndb

EPSS: Низкий
github логотип

GHSA-7wrw-r4p8-38rx

5 месяцев назад

The HTTP client drops sensitive headers after following a cross-domain redirect. For example, a request to a.com/ containing an Authorization header which is redirected to b.com/ will not send that header to b.com. In the event that the client received a subsequent same-domain redirect, however, the sensitive headers would be restored. For example, a chain of redirects from a.com/, to b.com/1, and finally to b.com/2 would incorrectly send the Authorization header to b.com/2.

CVSS3: 6.1
EPSS: Низкий
github логотип

GHSA-3f6r-qh9c-x6mm

5 месяцев назад

A certificate with a URI which has a IPv6 address with a zone ID may incorrectly satisfy a URI name constraint that applies to the certificate chain. Certificates containing URIs are not permitted in the web PKI, so this only affects users of private PKIs which make use of URIs.

CVSS3: 6.1
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
suse-cvrf логотип
SUSE-SU-2025:0281-1

Security update for go1.22

5 месяцев назад
suse-cvrf логотип
SUSE-SU-2025:0280-1

Security update for go1.23

5 месяцев назад
redos логотип
ROS-20250212-16

Множественные уязвимости golang

CVSS3: 6.1
4 месяца назад
oracle-oval логотип
ELSA-2025-3772

ELSA-2025-3772: go-toolset:ol8 security update (MODERATE)

2 месяца назад
suse-cvrf логотип
SUSE-SU-2025:1555-1

Security update for go1.22-openssl

около 1 месяца назад
suse-cvrf логотип
SUSE-SU-2025:0285-1

Security update for go1.24

5 месяцев назад
suse-cvrf логотип
SUSE-SU-2025:01731-1

Security update for go1.23-openssl

24 дня назад
ubuntu логотип
CVE-2024-45341

A certificate with a URI which has a IPv6 address with a zone ID may incorrectly satisfy a URI name constraint that applies to the certificate chain. Certificates containing URIs are not permitted in the web PKI, so this only affects users of private PKIs which make use of URIs.

CVSS3: 6.1
0%
Низкий
5 месяцев назад
redhat логотип
CVE-2024-45341

A certificate with a URI which has a IPv6 address with a zone ID may incorrectly satisfy a URI name constraint that applies to the certificate chain. Certificates containing URIs are not permitted in the web PKI, so this only affects users of private PKIs which make use of URIs.

CVSS3: 4.2
0%
Низкий
5 месяцев назад
nvd логотип
CVE-2024-45341

A certificate with a URI which has a IPv6 address with a zone ID may incorrectly satisfy a URI name constraint that applies to the certificate chain. Certificates containing URIs are not permitted in the web PKI, so this only affects users of private PKIs which make use of URIs.

CVSS3: 6.1
0%
Низкий
5 месяцев назад
msrc логотип
CVSS3: 6.1
0%
Низкий
4 месяца назад
debian логотип
CVE-2024-45341

A certificate with a URI which has a IPv6 address with a zone ID may i ...

CVSS3: 6.1
0%
Низкий
5 месяцев назад
ubuntu логотип
CVE-2024-45336

The HTTP client drops sensitive headers after following a cross-domain redirect. For example, a request to a.com/ containing an Authorization header which is redirected to b.com/ will not send that header to b.com. In the event that the client received a subsequent same-domain redirect, however, the sensitive headers would be restored. For example, a chain of redirects from a.com/, to b.com/1, and finally to b.com/2 would incorrectly send the Authorization header to b.com/2.

CVSS3: 6.1
0%
Низкий
5 месяцев назад
redhat логотип
CVE-2024-45336

The HTTP client drops sensitive headers after following a cross-domain redirect. For example, a request to a.com/ containing an Authorization header which is redirected to b.com/ will not send that header to b.com. In the event that the client received a subsequent same-domain redirect, however, the sensitive headers would be restored. For example, a chain of redirects from a.com/, to b.com/1, and finally to b.com/2 would incorrectly send the Authorization header to b.com/2.

CVSS3: 5.9
0%
Низкий
5 месяцев назад
nvd логотип
CVE-2024-45336

The HTTP client drops sensitive headers after following a cross-domain redirect. For example, a request to a.com/ containing an Authorization header which is redirected to b.com/ will not send that header to b.com. In the event that the client received a subsequent same-domain redirect, however, the sensitive headers would be restored. For example, a chain of redirects from a.com/, to b.com/1, and finally to b.com/2 would incorrectly send the Authorization header to b.com/2.

CVSS3: 6.1
0%
Низкий
5 месяцев назад
msrc логотип
CVSS3: 6.1
0%
Низкий
4 месяца назад
debian логотип
CVE-2024-45336

The HTTP client drops sensitive headers after following a cross-domain ...

CVSS3: 6.1
0%
Низкий
5 месяцев назад
suse-cvrf логотип
SUSE-SU-2025:0429-1

Security update for govulncheck-vulndb

4 месяца назад
github логотип
GHSA-7wrw-r4p8-38rx

The HTTP client drops sensitive headers after following a cross-domain redirect. For example, a request to a.com/ containing an Authorization header which is redirected to b.com/ will not send that header to b.com. In the event that the client received a subsequent same-domain redirect, however, the sensitive headers would be restored. For example, a chain of redirects from a.com/, to b.com/1, and finally to b.com/2 would incorrectly send the Authorization header to b.com/2.

CVSS3: 6.1
0%
Низкий
5 месяцев назад
github логотип
GHSA-3f6r-qh9c-x6mm

A certificate with a URI which has a IPv6 address with a zone ID may incorrectly satisfy a URI name constraint that applies to the certificate chain. Certificates containing URIs are not permitted in the web PKI, so this only affects users of private PKIs which make use of URIs.

CVSS3: 6.1
0%
Низкий
5 месяцев назад

Уязвимостей на страницу