Количество 5
Количество 5
CVE-2017-20146
Usage of the CORS handler may apply improper CORS headers, allowing the requester to explicitly control the value of the Access-Control-Allow-Origin header, which bypasses the expected behavior of the Same Origin Policy.
CVE-2017-20146
Usage of the CORS handler may apply improper CORS headers, allowing the requester to explicitly control the value of the Access-Control-Allow-Origin header, which bypasses the expected behavior of the Same Origin Policy.
CVE-2017-20146
Usage of the CORS handler may apply improper CORS headers, allowing the requester to explicitly control the value of the Access-Control-Allow-Origin header, which bypasses the expected behavior of the Same Origin Policy.
CVE-2017-20146
Usage of the CORS handler may apply improper CORS headers, allowing th ...
GHSA-jcr6-mmjj-pchw
gorilla/handlers may allow requester to bypass expected behavior of the Same Origin Policy
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2017-20146 Usage of the CORS handler may apply improper CORS headers, allowing the requester to explicitly control the value of the Access-Control-Allow-Origin header, which bypasses the expected behavior of the Same Origin Policy. | CVSS3: 9.8 | 0% Низкий | около 3 лет назад | |
CVE-2017-20146 Usage of the CORS handler may apply improper CORS headers, allowing the requester to explicitly control the value of the Access-Control-Allow-Origin header, which bypasses the expected behavior of the Same Origin Policy. | CVSS3: 7 | 0% Низкий | около 3 лет назад | |
CVE-2017-20146 Usage of the CORS handler may apply improper CORS headers, allowing the requester to explicitly control the value of the Access-Control-Allow-Origin header, which bypasses the expected behavior of the Same Origin Policy. | CVSS3: 9.8 | 0% Низкий | около 3 лет назад | |
CVE-2017-20146 Usage of the CORS handler may apply improper CORS headers, allowing th ... | CVSS3: 9.8 | 0% Низкий | около 3 лет назад | |
GHSA-jcr6-mmjj-pchw gorilla/handlers may allow requester to bypass expected behavior of the Same Origin Policy | CVSS3: 9.8 | 0% Низкий | около 3 лет назад |
Уязвимостей на страницу