If errors returned from MarshalJSON... CVE-2024-24785

- AV AC AU C I A
发布: 2024-03-05
修订: 2025-03-14

If errors returned from MarshalJSON methods contain user controlled data, they may be used to break the contextual auto-escaping behavior of the html/template package, allowing for subsequent actions to inject unexpected content into templates.

0%
暂无可用Exp或PoC
当前有0条受影响产品信息