Vulnerabilities > Gofiber

DATE CVE VULNERABILITY TITLE RISK
2024-01-11 CVE-2024-22199 Improper Encoding or Escaping of Output vulnerability in Gofiber Django
This package provides universal methods to use multiple template engines with the Fiber web framework using the Views interface.
network
low complexity
gofiber CWE-116
6.1
2023-10-16 CVE-2023-45128 Reliance on Untrusted Inputs in a Security Decision vulnerability in Gofiber Fiber
Fiber is an express inspired web framework written in Go.
network
low complexity
gofiber CWE-807
8.8
2023-10-16 CVE-2023-45141 Reliance on Cookies without Validation and Integrity Checking vulnerability in Gofiber Fiber
Fiber is an express inspired web framework written in Go.
network
low complexity
gofiber CWE-565
8.8
2023-09-08 CVE-2023-41338 Always-Incorrect Control Flow Implementation vulnerability in Gofiber Fiber
Fiber is an Express inspired web framework built in the go language.
network
low complexity
gofiber CWE-670
5.3
2020-07-20 CVE-2020-15111 Injection vulnerability in Gofiber Fiber
In Fiber before version 1.12.6, the filename that is given in c.Attachment() (https://docs.gofiber.io/ctx#attachment) is not escaped, and therefore vulnerable for a CRLF injection attack.
network
gofiber CWE-74
5.8