VYPR

apk package

chainguard/hello-world-golang

pkg:apk/chainguard/hello-world-golang

Vulnerabilities (42)

  • CVE-2023-45290MedMar 5, 2024
    affected < 1.3-r1fixed 1.3-r1

    When parsing a multipart form (either explicitly with Request.ParseMultipartForm or implicitly with Request.FormValue, Request.PostFormValue, or Request.FormFile), limits on the total size of the parsed form were not applied to the memory consumed while reading a single form line

  • CVE-2023-45289MedMar 5, 2024
    affected < 1.3-r1fixed 1.3-r1

    When following an HTTP redirect to a domain which is not a subdomain match or exact match of the initial domain, an http.Client does not forward sensitive headers such as "Authorization" or "Cookie". For example, a redirect from foo.com to www.foo.com will forward the Authorizati

Page 3 of 3