Junglewise Threat Intelligence

CVE-2018-20744: GO-2023-1792 - Insecure wildcard CORS policy in github.com/rs/cors

CVE-2018-20744 · Severity: low · CVSS 3 · Published 2023-06-08

Technologies: github.com/rs/cors (Go), github.com/gofiber/fiber/v2 (Go). Vendors: Go.

Executive brief

Insecure wildcard CORS policy in github.com/rs/cors

Affected products

  • Go github.com/rs/cors
  • Go github.com/gofiber/fiber/v2

Related threats