CVE-2015-5740
The net/http library in net/http/transfer.go in Go before 1.4.3 does not properly parse HTTP headers, which allows remot
The net/http library in net/http/transfer.go in Go before 1.4.3 does not properly parse HTTP headers, which allows remote attackers to conduct HTTP request smuggling attacks via a request with two Content-length headers.
CRITICAL · CVSS 9.8
EPSS 0.04273
Schedule remediation
- CVSS base score ≥ 7.0
Sigma rules0
YARA rules0