Логотип exploitDog
bind:CVE-2025-1386
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2025-1386

Количество 2

Количество 2

nvd логотип

CVE-2025-1386

10 месяцев назад

When using the ch-go library, under a specific condition when the query includes a large, uncompressed malicious external data, it is possible for an attacker in control of such data to smuggle another query packet into the connection stream.

CVSS3: 4.9
EPSS: Низкий
github логотип

GHSA-m454-3xv7-qj85

10 месяцев назад

CVE-2025-1386- Query smuggling in ch-go library

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2025-1386

When using the ch-go library, under a specific condition when the query includes a large, uncompressed malicious external data, it is possible for an attacker in control of such data to smuggle another query packet into the connection stream.

CVSS3: 4.9
0%
Низкий
10 месяцев назад
github логотип
GHSA-m454-3xv7-qj85

CVE-2025-1386- Query smuggling in ch-go library

0%
Низкий
10 месяцев назад

Уязвимостей на страницу