Количество 17
Количество 17
CVE-2025-47910
When using http.CrossOriginProtection, the AddInsecureBypassPattern method can unexpectedly bypass more requests than intended. CrossOriginProtection then skips validation, but forwards the original request path, which may be served by a different handler without the intended security protections.
CVE-2025-47910
When using http.CrossOriginProtection, the AddInsecureBypassPattern method can unexpectedly bypass more requests than intended. CrossOriginProtection then skips validation, but forwards the original request path, which may be served by a different handler without the intended security protections.
CVE-2025-47910
When using http.CrossOriginProtection, the AddInsecureBypassPattern method can unexpectedly bypass more requests than intended. CrossOriginProtection then skips validation, but forwards the original request path, which may be served by a different handler without the intended security protections.
CVE-2025-47910
When using http.CrossOriginProtection, the AddInsecureBypassPattern me ...
SUSE-SU-2025:03525-1
Security update for go1.25-openssl
SUSE-SU-2025:03524-1
Security update for go1.25-openssl
SUSE-SU-2025:03200-1
Security update for go1.25
GHSA-8pjc-487g-w6p2
When using http.CrossOriginProtection, the AddInsecureBypassPattern method can unexpectedly bypass more requests than intended. CrossOriginProtection then skips validation, but forwards the original request path, which may be served by a different handler without the intended security protections.
BDU:2025-11599
Уязвимость языка программирования Go, связанная с неправильной проверкой входных данных, позволяющая нарушителю обойти существующие ограничения безопасности
ROS-20251014-11
Уязвимость golang
SUSE-SU-2026:2643-1
Security update for aws-iam-authenticator
openSUSE-SU-2025:20157-1
Security update for go1.25
ALT-PU-2026-10385
ALT-PU-2026-10385: package `prometheus-podman-exporter` update to version 1.21.2-alt1
SUSE-SU-2026:0298-1
Security update for go1.25-openssl
SUSE-SU-2026:0297-1
Security update for go1.25-openssl
ALT-PU-2025-14968
ALT-PU-2025-14968: package `golang` update to version 1.25.4-alt1
ALT-PU-2026-15350
ALT-PU-2026-15350: package `golang` update to version 1.26.7-alt0.p10.1
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2025-47910 When using http.CrossOriginProtection, the AddInsecureBypassPattern method can unexpectedly bypass more requests than intended. CrossOriginProtection then skips validation, but forwards the original request path, which may be served by a different handler without the intended security protections. | CVSS3: 5.4 | 0% Низкий | около 1 года назад | |
CVE-2025-47910 When using http.CrossOriginProtection, the AddInsecureBypassPattern method can unexpectedly bypass more requests than intended. CrossOriginProtection then skips validation, but forwards the original request path, which may be served by a different handler without the intended security protections. | CVSS3: 5.4 | 0% Низкий | около 1 года назад | |
CVE-2025-47910 When using http.CrossOriginProtection, the AddInsecureBypassPattern method can unexpectedly bypass more requests than intended. CrossOriginProtection then skips validation, but forwards the original request path, which may be served by a different handler without the intended security protections. | CVSS3: 5.4 | 0% Низкий | около 1 года назад | |
CVE-2025-47910 When using http.CrossOriginProtection, the AddInsecureBypassPattern me ... | CVSS3: 5.4 | 0% Низкий | около 1 года назад | |
SUSE-SU-2025:03525-1 Security update for go1.25-openssl | 0% Низкий | 12 месяцев назад | ||
SUSE-SU-2025:03524-1 Security update for go1.25-openssl | 0% Низкий | 12 месяцев назад | ||
SUSE-SU-2025:03200-1 Security update for go1.25 | 0% Низкий | около 1 года назад | ||
GHSA-8pjc-487g-w6p2 When using http.CrossOriginProtection, the AddInsecureBypassPattern method can unexpectedly bypass more requests than intended. CrossOriginProtection then skips validation, but forwards the original request path, which may be served by a different handler without the intended security protections. | CVSS3: 5.4 | 0% Низкий | около 1 года назад | |
BDU:2025-11599 Уязвимость языка программирования Go, связанная с неправильной проверкой входных данных, позволяющая нарушителю обойти существующие ограничения безопасности | CVSS3: 5.3 | 0% Низкий | около 1 года назад | |
ROS-20251014-11 Уязвимость golang | CVSS3: 5.3 | 0% Низкий | 12 месяцев назад | |
SUSE-SU-2026:2643-1 Security update for aws-iam-authenticator | 3 месяца назад | |||
openSUSE-SU-2025:20157-1 Security update for go1.25 | 10 месяцев назад | |||
ALT-PU-2026-10385 ALT-PU-2026-10385: package `prometheus-podman-exporter` update to version 1.21.2-alt1 | CVSS3: 9.1 | 3 месяца назад | ||
SUSE-SU-2026:0298-1 Security update for go1.25-openssl | 8 месяцев назад | |||
SUSE-SU-2026:0297-1 Security update for go1.25-openssl | 8 месяцев назад | |||
ALT-PU-2025-14968 ALT-PU-2025-14968: package `golang` update to version 1.25.4-alt1 | CVSS3: 7.5 | 10 месяцев назад | ||
ALT-PU-2026-15350 ALT-PU-2026-15350: package `golang` update to version 1.26.7-alt0.p10.1 | CVSS3: 10 | 13 дней назад |
Уязвимостей на страницу