CVE-2024-45336 | Google Go up to 1.22.10/1.23.4 net-http cross-domain policy (EUVD-2024-41740 / Nessus ID 214540)
A vulnerability was found in Google Go up to 1.22.10/1.23.4 and classified as problematic. This affects an unknown function of the component net-http. Such manipulation leads to permissive cross-domain policy with untrusted domains.
This vulnerability is referenced as CVE-2024-45336. It is possible to launch the attack remotely. No exploit is available.
It is suggested to upgrade the affected component.