#VU78680 Improper Interaction Between Multiple Correctly-Behaving Entities in Go programming language - CVE-2020-29510
Published: July 26, 2023
Go programming language
Description
The vulnerability allows a remote attacker to bypass security restrictions.
The vulnerability exists due to incorrect preserving the semantics of directives during tokenization round-trips. A remote unauthenticated attacker can craft inputs that behave in conflicting ways during different stages of processing in affected downstream applications.