cxnleach / Vuln_GO_App

MIT License
0 stars 0 forks source link

CX: CVE-2020-28483 in Go-github.com/gin-gonic/gin and v1.3.0 @ Vuln_GO_App.master #69

Open github-actions[bot] opened 4 months ago

github-actions[bot] commented 4 months ago

Description

This affects all versions of package github.com/gin-gonic/gin. When gin is exposed directly to the internet, a client's IP can be spoofed by setting the X-Forwarded-For header.

HIGH Vulnerable Package issue exists @ github.com/gin-gonic/gin in branch master

Vulnerability ID: CVE-2020-28483

Package Name: github.com/gin-gonic/gin

Severity: HIGH

CVSS Score: 7.1

Publish Date: 2021-01-20T18:15:00

Current Package Version: v1.3.0

Remediation Upgrade Recommendation: v1.3.1-0.20190507114305-b75d67cd51eb

Link To SCA

Reference – NVD link

github-actions[bot] commented 4 months ago

Issue still exists.