Vulnerabilities > Gofiber > Fiber > 1.9.1

DATE CVE VULNERABILITY TITLE RISK
2023-09-08 CVE-2023-41338 Always-Incorrect Control Flow Implementation vulnerability in Gofiber Fiber
Fiber is an Express inspired web framework built in the go language.
network
low complexity
gofiber CWE-670
5.3
2020-07-20 CVE-2020-15111 Injection vulnerability in Gofiber Fiber
In Fiber before version 1.12.6, the filename that is given in c.Attachment() (https://docs.gofiber.io/ctx#attachment) is not escaped, and therefore vulnerable for a CRLF injection attack.
network
gofiber CWE-74
5.8