[Git][security-tracker-team/security-tracker][master] Add CVE-2019-25211/golang-github-gin-contrib-cors

Salvatore Bonaccorso (@carnil) carnil at debian.org
Sat Jul 6 07:48:20 BST 2024



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
54f94c5b by Salvatore Bonaccorso at 2024-07-06T08:47:31+02:00
Add CVE-2019-25211/golang-github-gin-contrib-cors

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -1062,7 +1062,10 @@ CVE-2024-38525 (dd-trace-cpp is the Datadog distributed tracing for C++. When th
 CVE-2024-38518 (BigBlueButton is an open-source virtual classroom designed to help tea ...)
 	NOT-FOR-US: BigBlueButton
 CVE-2019-25211 (parseWildcardRules in Gin-Gonic CORS middleware before 1.6.0 mishandle ...)
-	TODO: check
+	- golang-github-gin-contrib-cors <unfixed>
+	NOTE: https://github.com/gin-contrib/cors/pull/57
+	NOTE: https://github.com/gin-contrib/cors/pull/106
+	NOTE: https://github.com/gin-contrib/cors/commit/27b723a473efd80d5a498fa9f5933c80204c850d (v1.6.0)
 CVE-2024-6403 (A vulnerability, which was classified as critical, has been found in T ...)
 	NOT-FOR-US: Tenda
 CVE-2024-6402 (A vulnerability classified as critical was found in Tenda A301 15.13.0 ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/54f94c5b414c93c4ac6eccc6378e1a08788daf8b

-- 
This project does not include diff previews in email notifications.
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/54f94c5b414c93c4ac6eccc6378e1a08788daf8b
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20240706/77b3e6f1/attachment.htm>


More information about the debian-security-tracker-commits mailing list