CVE-2020-5401

Source
https://cve.org/CVERecord?id=CVE-2020-5401
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2020-5401.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2020-5401
Published
2020-02-27T20:15:11.500Z
Modified
2025-11-14T11:08:05.627578Z
Severity
  • 5.3 (Medium) CVSS_V3 - CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L CVSS Calculator
Summary
[none]
Details

Cloud Foundry Routing Release, versions prior to 0.197.0, contains GoRouter, which allows malicious clients to send invalid headers, causing caching layers to reject subsequent legitimate clients trying to access the app.

References

Affected packages

Git / github.com/cloudfoundry/routing-release

Affected ranges

Type
GIT
Repo
https://github.com/cloudfoundry/routing-release
Events
Introduced
0 Unknown introduced commit / All previous commits are affected
Fixed

Affected versions

0.*
0.118.0
0.121.0
0.123.0
0.126.0
0.133.0
0.134.0
0.135.0
0.136.0
0.137.0
0.138.0
0.139.0
0.140.0
0.141.0
0.142.0
0.143.0
0.144.0
0.145.0
0.146.0
0.147.0
0.149.0
0.150.0
0.151.0
0.152.0
0.153.0
0.154.0
0.155.0
0.156.0
0.157.0
0.158.0
0.159.0
0.160.0
0.161.0
0.162.0
0.163.0
0.164.0
0.165.0
0.166.0
0.167.0
0.168.0
0.169.0
0.170.0
0.171.0
0.172.0
0.173.0
0.174.0
0.175.0
0.176.0
0.177.0
0.178.0
0.179.0
0.180.0
0.181.0
0.182.0
0.183.0
0.184.0
0.185.0
0.186.0
0.187.0
0.188.0
0.189.0
0.190.0
0.191.0
0.192.0
0.193.0
0.194.0
0.195.0
0.196.0
0.62.0
0.66.0
0.69.0
0.99.0

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2020-5401.json"