Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

gofiber — Vulnerabilities & Security Advisories 14

Browse all 14 CVE security advisories affecting gofiber. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Top products by gofiber:fibertemplateutils
CVE IDTitleCVSSSeverityPublished
CVE-2026-25899 Fiber is Vulnerable to Denial of Service via Flash Cookie Unbounded Allocation — fiberCWE-789 7.5 High2026-02-24
CVE-2026-25891 Fiber has an Arbitrary File Read in Static Middleware on Windows — fiberCWE-22 7.5AIHighAI2026-02-24
CVE-2026-25882 Fiber has a Denial of Service Vulnerability via Route Parameter Overflow — fiberCWE-129 7.5AIHighAI2026-02-24
CVE-2025-66630 Fiber insecurely fallsback in utils.UUIDv4() / utils.UUID() — predictable / zero‑UUID on crypto/rand failure — fiberCWE-338 9.1AICriticalAI2026-02-09
CVE-2025-66565 Fiber Utils UUIDv4 and UUID Silent Fallback to Predictable Values — utilsCWE-252 7.5AIHighAI2025-12-09
CVE-2025-54801 Fiber Susceptible to Crash via `BodyParser` Due to Unvalidated Large Slice Index in Decoder — fiberCWE-789 7.5AIHighAI2025-08-05
CVE-2025-48075 Fiber panics when fiber.Ctx.BodyParser parses invalid range index — fiberCWE-129 7.5AIHighAI2025-05-22
CVE-2024-38513 Fiber Session Middleware Token Injection Vulnerability — fiberCWE-384 10.0 Critical2024-07-01
CVE-2024-25124 Fiber has Insecure CORS Configuration, Allowing Wildcard Origin with Credentials — fiberCWE-346 9.4 Critical2024-02-21
CVE-2024-22199 Django Template Engine Vulnerable to XSS — templateCWE-20 9.3 Critical2024-01-11
CVE-2023-45141 CSRF Token Validation Vulnerability in fiber — fiberCWE-352 8.6 High2023-10-16
CVE-2023-45128 CSRF Token Reuse Vulnerability in fiber — fiberCWE-20 10.0 Critical2023-10-16
CVE-2023-41338 Vulnerability in Ctx.IsFromLocal() in gofiber — fiberCWE-670 5.3 Medium2023-09-08
CVE-2020-15111 CRLF vulnerability in Fiber — fiberCWE-74 4.2 Medium2020-07-20

This page lists every published CVE security advisory associated with gofiber. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.