VendorsGoHttp Projectgohttpany version
Vulnerabilities

GoHttp Project GoHttp any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

4CVEs
CVE-2019-12160
GoHTTP through 2017-07-25 has a sendHeader use-after-free.
Published 2019-05-17 · Modified
9.8EPSS 0.017
CVE-2019-12158
GoHTTP through 2017-07-25 has a GetExtension heap-based buffer overflow via a long extension.
Published 2019-05-17 · Modified
9.8EPSS 0.016
CVE-2019-12159
GoHTTP through 2017-07-25 has a stack-based buffer over-read in the scan function (when called from getRequestType) via a long URL.
Published 2019-05-17 · Modified
7.5EPSS 0.013
CVE-2019-12198
In GoHttp through 2017-07-25, there is a stack-based buffer over-read via a long User-Agent header.
Published 2019-05-20 · Modified
7.5EPSS 0.013