You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
This report was assigned CWE-116 ("Improper Encoding or Escaping of Output"),
but CWE-201 ("Insertion of Sensitive Information Into Sent Data") better
describes the incorrect behavior of sending a cookie or Authorization header
when the header should have been stripped.
Change-Id: I8d3266c7348d3ed9d60d903b7a7afb39bdee212b
Reviewed-on: https://go-review.googlesource.com/c/vulndb/+/704036
Auto-Submit: Damien Neil <[email protected]>
Reviewed-by: Neal Patel <[email protected]>
LUCI-TryBot-Result: Go LUCI <[email protected]>
0 commit comments