This repository has been archived by the owner on Jan 3, 2023. It is now read-only.
CVE-2022-32149 (High) detected in github.com/golang/text/language-v0.3.2 #12
Labels
security vulnerability
Security vulnerability detected by WhiteSource
CVE-2022-32149 - High Severity Vulnerability
Vulnerable Library - github.com/golang/text/language-v0.3.2
[mirror] Go text processing support
Dependency Hierarchy:
Vulnerability Details
An attacker may cause a denial of service by crafting an Accept-Language header which ParseAcceptLanguage will take significant time to parse.
Publish Date: 2022-10-14
URL: CVE-2022-32149
CVSS 3 Score Details (7.5)
Base Score Metrics:
Suggested Fix
Type: Upgrade version
Origin: https://www.cve.org/CVERecord?id=CVE-2022-32149
Release Date: 2022-10-14
Fix Resolution: v0.3.8
Step up your Open Source Security Game with Mend here
The text was updated successfully, but these errors were encountered: