VYPR

Go modules package

code.cloudfoundry.org/gorouter

pkg:golang/code.cloudfoundry.org/gorouter

Vulnerabilities (1)

  • CVE-2019-11289Nov 19, 2019
    affected < 0.0.0-20191101214924-b1b5c44e050ffixed 0.0.0-20191101214924-b1b5c44e050f

    Cloud Foundry Routing, all versions before 0.193.0, does not properly validate nonce input. A remote unauthenticated malicious user could forge an HTTP route service request using an invalid nonce that will cause the Gorouter to crash.