Loading HuntDB...

GHSA-5796-p3m6-9qj4

GitHub Security Advisory

Cloud Foundry Routing Improper Input Validation vulnerability

✓ GitHub Reviewed HIGH Has CVE

Advisory Details

Cloud Foundry Routing, all versions before 0.0.0-20191101214924-b1b5c44e050f, does not properly validate nonce input. A remote unauthorized malicious user could forge a route service request using an invalid nonce that will cause the Gorouter to crash.

Affected Packages

Go code.cloudfoundry.org/gorouter
Affected versions: 0 (fixed in 0.0.0-20191101214924-b1b5c44e050f)

Related CVEs

Key Information

GHSA ID
GHSA-5796-p3m6-9qj4
Published
May 18, 2021 3:31 PM
Last Modified
May 20, 2024 7:56 PM
CVSS Score
7.5 /10
Primary Ecosystem
Go
Primary Package
code.cloudfoundry.org/gorouter
GitHub Reviewed
✓ Yes

Dataset

Last updated: July 7, 2025 6:28 AM

Data from GitHub Advisory Database. This information is provided for research and educational purposes.