Description
Due to improper validation of caller input, validation is silently disabled if the provided expected token is malformed, causing any user supplied token to be considered valid.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-7521 | Due to improper validation of caller input, validation is silently disabled if the provided expected token is malformed, causing any user supplied token to be considered valid. |
Github GHSA |
GHSA-5x84-q523-vvwr | nosurf vulnerable to improper input validation |
References
History
Fri, 11 Apr 2025 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: Go
Published:
Updated: 2025-04-11T16:26:19.344Z
Reserved: 2022-07-29T18:39:05.265Z
Link: CVE-2020-36564
Updated: 2024-08-04T17:30:08.463Z
Status : Modified
Published: 2022-12-27T22:15:11.673
Modified: 2025-04-11T17:15:34.950
Link: CVE-2020-36564
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD
Github GHSA