Server-side request forgery (SSRF) In github.com/greenpau/caddy-security
Description
Server-Side Request Forgery in github.com/greenpau/caddy-security All versions of the package github.com/greenpau/caddy-security are vulnerable to Server-side Request Forgery (SSRF) via X-Forwarded-Host header manipulation. An attacker can expose sensitive information, interact with internal services, or exploit other vulnerabilities within the network by exploiting this vulnerability.
Mitigation
Update Impact
Minimal update. May introduce new vulnerabilities or breaking changes.
Ecosystem | Package | Affected version | Patched versions |
|---|---|---|---|
go | 1.1.24 |
Aliases
1. 2. 3. 4.
References
1. 2.