Known Vulnerabilities for Go Cors by Go Cors Project
Listed below are 1 of the newest known vulnerabilities associated with "Go Cors" by "Go Cors Project".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-91081 json | Docs through 5.6.1 contains a server-side request forgery vulnerability in the cors-proxy endpoint that allows anonymous atta... | Not Provided | 2026-09-14 | 2026-09-14 |
| CVE-2026-87551 json | Improper certificate validation in CORS in Google Chrome prior to 153.0.8010.36 allowed a remote attacker leveraging social e... | Not Provided | 2026-09-09 | 2026-09-14 |
| CVE-2026-87531 json | Information leak in CORS in Google Chrome prior to 153.0.8010.36 allowed a remote attacker who had compromised the renderer p... | Not Provided | 2026-09-09 | 2026-09-09 |
| CVE-2026-87485 json | Incorrect authorization in CORS in Google Chrome prior to 153.0.8010.36 allowed a remote attacker who had compromised the ren... | Not Provided | 2026-09-09 | 2026-09-09 |
| CVE-2026-87434 json | Missing authorization in CORS in Google Chrome prior to 153.0.8010.36 allowed a remote attacker who had compromised the rende... | Not Provided | 2026-09-09 | 2026-09-09 |
| CVE-2026-85547 json | A cross-site request forgery (CSRF) vulnerability exists in MISP due to form-security and CSRF protections being disabled bas... | Not Provided | 2026-09-04 | 2026-09-04 |
| CVE-2026-85183 json | Taipy configures its socket.io server with wildcard CORS origin and credential flag enabled, allowing any web page to establi... | Not Provided | 2026-09-03 | 2026-09-03 |
| CVE-2026-82438 json | Description Three separate mechanisms allowed a web page on an unrelated origin to read responses that Storm's HTTP componen... | Not Provided | 2026-09-14 | 2026-09-14 |
| CVE-2026-82291 json | HeyForm before 3.0.0-rc.8 reflects the request Origin header in CORS responses while allowing credentials, enabling cross-ori... | Not Provided | 2026-08-28 | 2026-08-31 |
| CVE-2026-82287 json | Rybbit before 2.7.0 contains a CORS misconfiguration vulnerability that allows attackers to bypass origin restrictions by ref... | Not Provided | 2026-08-28 | 2026-08-31 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Go Cors Project | Go Cors | 1.7.0 | |||
| Application | Go Cors Project | Go Cors | 1.6.0 | |||
| Application | Go Cors Project | Go Cors | 1.5.0 | |||
| Application | Go Cors Project | Go Cors | 1.4.0 | |||
| Application | Go Cors Project | Go Cors | 1.3.0 | |||
| Application | Go Cors Project | Go Cors | 1.2 | |||
| Application | Go Cors Project | Go Cors | 1.1 | |||
| Application | Go Cors Project | Go Cors | 1.0 |