logo

Database

HTTP request smuggling In github.com/gin-gonic/gin

Description

Inconsistent Interpretation of HTTP Requests in github.com/gin-gonic/gin When gin is exposed directly to the internet, a client's IP can be spoofed by setting the X-Forwarded-For header. This affects all versions of package github.com/gin-gonic/gin under 1.7.7.

Mitigation

Update Impact

Minimal update. May introduce new vulnerabilities or breaking changes.

Ecosystem
Component
Affected version
Patched versions