Debian 11: DLA-4151-1 critical: golang-github-gorilla-csrf issue
The following vulnerability has been discovered in the gorilla/csrf package for Go: Prior to 1.7.3, gorilla/csrf did not validate the Origin header against an allowlist. It executed its validation of the Referer header forLinuxSecurity – Security AdvisoriesRead More