CVE-2022-32148 | Google Go up to 1.17.11/1.18.3 net-http httputil.ReverseProxy.ServeHTTP X-Forwarded-For information disclosure (FEDORA-2022-30c5ed5625 / Nessus ID 211529)
A vulnerability, which was classified as problematic, has been found in Google Go up to 1.17.11/1.18.3. This affects the function httputil.ReverseProxy.ServeHTTP of the component net-http. This manipulation of the argument X-Forwarded-For causes information disclosure.
This vulnerability is tracked as CVE-2022-32148. The attack is possible to be carried out remotely. No exploit exists.
It is advisable to upgrade the affected component.