Количество 3
Количество 3
CVE-2024-52594
Gomatrixserverlib is a Go library for matrix federation. Gomatrixserverlib is vulnerable to server-side request forgery, serving content from a private network it can access, under certain conditions. The commit `c4f1e01` fixes this issue. Users are advised to upgrade. Users unable to upgrade should use a local firewall to limit the network segments and hosts the service using gomatrixserverlib can access.
GHSA-4ff6-858j-r822
Gomatrixserverlib Server-Side Request Forgery (SSRF) on redirects and federation
SUSE-SU-2025:0297-1
Security update for govulncheck-vulndb
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2024-52594 Gomatrixserverlib is a Go library for matrix federation. Gomatrixserverlib is vulnerable to server-side request forgery, serving content from a private network it can access, under certain conditions. The commit `c4f1e01` fixes this issue. Users are advised to upgrade. Users unable to upgrade should use a local firewall to limit the network segments and hosts the service using gomatrixserverlib can access. | CVSS3: 4.3 | 0% Низкий | около 1 года назад | |
GHSA-4ff6-858j-r822 Gomatrixserverlib Server-Side Request Forgery (SSRF) on redirects and federation | CVSS3: 4.3 | 0% Низкий | около 1 года назад | |
SUSE-SU-2025:0297-1 Security update for govulncheck-vulndb | около 1 года назад |
Уязвимостей на страницу