Filtered by vendor Golang Subscriptions
Filtered by product Cors Subscriptions
Total 1 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2025-47908 1 Golang 1 Cors 2025-08-12 7.5 High
Middleware causes a prohibitive amount of heap allocations when processing malicious preflight requests that include a Access-Control-Request-Headers (ACRH) header whose value contains many commas. This behavior can be abused by attackers to produce undue load on the middleware/server as an attempt to cause a denial of service.