漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
Vulnerability Title
Denial of service via malicious preflight requests in github.com/rs/cors
Vulnerability Description
Middleware causes a prohibitive amount of heap allocations when processing malicious preflight requests that include a Access-Control-Request-Headers (ACRH) header whose value contains many commas. This behavior can be abused by attackers to produce undue load on the middleware/server as an attempt to cause a denial of service.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Go CORS handler 安全漏洞
Vulnerability Description
Go CORS handler是Olivier Poitrey个人开发者的一个处理CORS请求的可配置处理程序。 Go CORS handler存在安全漏洞,该漏洞源于处理恶意预检请求时可能导致堆分配过多,可能导致拒绝服务。
CVSS Information
N/A
Vulnerability Type
N/A