Spring Cloud Gateway Server forwards the X-Forwarded-For and Forwarded headers from untrusted proxies.
| Package (Ecosystem) | Introduced | Fixed | Limit |
|---|---|---|---|
| org.springframework.cloud:spring-cloud-gateway-server(Maven) | 4.2.0 | 4.2.3 | N/A |
| org.springframework.cloud:spring-cloud-gateway-server(Maven) | 4.1.0 | 4.1.8 | N/A |
| org.springframework.cloud:spring-cloud-gateway-server(Maven) | 4.0.0 | N/A | N/A |
| org.springframework.cloud:spring-cloud-gateway-server(Maven) | 0 | 3.1.10 | N/A |
| org.springframework.cloud:spring-cloud-gateway-server-mvc(Maven) | 4.1.7 | 4.2.3 | N/A |
CVSS Metrics