The Ctx.IsFromLocal function can incorrectly report a request as being sent from localhost when the request contains an X-Forwarded-For header containing a localhost IP address.
{ "review_status": "REVIEWED", "url": "https://pkg.go.dev/vuln/GO-2023-2052" }