Due to improper input validation when uploading a file, a malicious user may force the server to return arbitrary HTTP headers when the uploaded file is downloaded.
{ "imports": [ { "path": "github.com/gofiber/fiber", "symbols": [ "Ctx.Attachment" ] } ] }
"https://vuln.go.dev/ID/GO-2021-0091.json"
"https://pkg.go.dev/vuln/GO-2021-0091"