Gohttp ProjectCVEs & Vulnerabilities
4 CVEs affecting Gohttp Project products, tracked from the National Vulnerability Database, with CVSS/EPSS scores and exploitation status.
4 CVEs→ All vendors
Most Affected Products
gohttp 4
CVE-2019-12198HIGH
In GoHttp through 2017-07-25, there is a stack-based buffer over-read via a long User-Agent header.
20 May 2019
7.5
CVSS
CVE-2019-12160CRITICAL
GoHTTP through 2017-07-25 has a sendHeader use-after-free.
17 May 2019
9.8
CVSS
CVE-2019-12159HIGH
GoHTTP through 2017-07-25 has a stack-based buffer over-read in the scan function (when called from getRequestType) via a long URL.
17 May 2019
7.5
CVSS
CVE-2019-12158CRITICAL
GoHTTP through 2017-07-25 has a GetExtension heap-based buffer overflow via a long extension.
17 May 2019
9.8
CVSS
← PrevPage 1 / 1Next →