Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:28598
HistoryDec 15, 2020 - 3:24 a.m.

Incorrect Preservation Of Namespace Prefixes

2020-12-1503:24:24
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
10

0.001 Low

EPSS

Percentile

43.1%

encoding/xml in github.com/golang/go is performing incorrect preservation of namespace prefixes. An attacker is able to provide malicious inputs to cause conflicts in the way of preserving the namespace prefixes on XML elements during tokenization round-trips.

CPENameOperatorVersion
github.com/golang/goeqHEAD