Количество 2
Количество 2
CVE-2018-20744
около 7 лет назад
The Olivier Poitrey Go CORS handler through 1.3.0 actively converts a wildcard CORS policy into reflecting an arbitrary Origin header value, which is incompatible with the CORS security design, and could lead to CORS misconfiguration security problems.
CVSS3: 5.9
EPSS: Низкий
GHSA-927h-x4qj-r242
больше 3 лет назад
github.com/gofiber/fiber/v2 vulnerable to Origin Validation Error
CVSS3: 5.9
EPSS: Низкий
Уязвимостей на страницу
20
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2018-20744 The Olivier Poitrey Go CORS handler through 1.3.0 actively converts a wildcard CORS policy into reflecting an arbitrary Origin header value, which is incompatible with the CORS security design, and could lead to CORS misconfiguration security problems. | CVSS3: 5.9 | 0% Низкий | около 7 лет назад | |
GHSA-927h-x4qj-r242 github.com/gofiber/fiber/v2 vulnerable to Origin Validation Error | CVSS3: 5.9 | 0% Низкий | больше 3 лет назад |
Уязвимостей на страницу
20