All vulnerabilities

CVE-2022-32149

Denial of service via crafted Accept-Language header in golang.org/x/text/language

Description

An attacker may cause a denial of service by crafting an Accept-Language header which ParseAcceptLanguage will take significant time to parse.

Patch Available

Fix available through Seal Security. 

No upgrade required, protect your application instantly.

Fix without upgrading
Score
Severity
Ecosystem
GO
Publish Date
October 11, 2022
Modified Date
May 20, 2024
Score Vector
Affected Versions