version 1.5.0 and 1.6.0 when using the new debug-host
feature could expose unnecessary information about the host
Use 1.6.1 or newer
Downgrade to 1.4.0 or set debug-host
to empty
https://github.com/fortio/proxy/pull/38
Q&A https://github.com/fortio/proxy/discussions
{ "severity": "MODERATE", "cwe_ids": [ "CWE-200" ], "github_reviewed_at": "2023-01-27T00:55:27Z", "nvd_published_at": null, "github_reviewed": true }