Affected by GO-2026-5075
and 4 other vulnerabilities
GO-2026-5075: Heimdall: IP Spoofing via Unvalidated Forwarding Headers in github.com/dadrus/heimdall
GO-2026-5097: Heimdall has an authorization bypass via path normalization mismatch in github.com/dadrus/heimdall
GO-2026-5108: Heimdall: Case-sensitive handling of URL-encoded slashes may lead to inconsistent path interpretation in github.com/dadrus/heimdall
GO-2026-5125: Heimdall: Forwarded Header Injection via Unsanitized Host Header in Proxy Mode in github.com/dadrus/heimdall
GO-2026-5200: Heimdall: Case-sensitive host matching may lead to policy bypass in github.com/dadrus/heimdall
package
Version:
v0.17.13
Opens a new window with list of versions in this module.
Published: Apr 5, 2026
License: Apache-2.0
Opens a new window with license information.
Imports: 26
Opens a new window with list of imports.
Imported by: 0
Opens a new window with list of known importers.
Documentation
¶
Source Files
¶
Click to show internal directories.
Click to hide internal directories.