Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-1768 | OWASP Coraza WAF is a golang modsecurity compatible web application firewall library. Due to the misuse of `log.Fatalf`, the application using coraza crashed after receiving crafted requests from attackers. The application will immediately crash after receiving a malicious request that triggers an error in `mime.ParseMediaType`. This issue was patched in version 3.0.1. |
Github GHSA |
GHSA-c2pj-v37r-2p6h | Coraza has potential denial of service vulnerability |
Wed, 02 Oct 2024 15:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: GitHub_M
Published:
Updated: 2024-10-02T14:41:35.285Z
Reserved: 2023-08-16T18:24:02.392Z
Link: CVE-2023-40586
Updated: 2024-08-02T18:38:50.961Z
Status : Modified
Published: 2023-08-25T21:15:09.197
Modified: 2024-11-21T08:19:46.147
Link: CVE-2023-40586
No data.
OpenCVE Enrichment
No data.
EUVD
Github GHSA