—
GO-2025-3607
gorilla/csrf CSRF vulnerability due to broken Referer validation in github.com/gorilla/csrf
Quick fix
GO-2025-3607 — github.com/gorilla/csrf: upgrade to the fixed version with the command below.
go get github.com/gorilla/csrf@v1.7.3Details
gorilla/csrf CSRF vulnerability due to broken Referer validation in github.com/gorilla/csrf
Are you affected?
Enter the version of the package you're using.