Due to the misuse of log.Fatalf, Coraza may crash after receiving crafted requests from attackers.
{ "url": "https://pkg.go.dev/vuln/GO-2023-1874", "review_status": "REVIEWED" }
{ "imports": [ { "symbols": [ "multipartBodyProcessor.Read" ], "path": "github.com/corazawaf/coraza/v2/bodyprocessors" } ] }
"https://vuln.go.dev/ID/GO-2023-1874.json"
{ "imports": [ { "symbols": [ "multipartBodyProcessor.ProcessRequest" ], "path": "github.com/corazawaf/coraza/v3/internal/bodyprocessors" } ] }