VDB
KO

GO-2026-5585

Fiber vulnerable to XSS in AutoFormat Content Negotiation in github.com/gofiber/fiber

Quick fix

GO-2026-5585 — github.com/gofiber/fiber/v2: upgrade to the fixed version with the command below.

go get github.com/gofiber/fiber/v2@v2.52.13

Details

Fiber vulnerable to XSS in AutoFormat Content Negotiation in github.com/gofiber/fiber

Are you affected?

Enter the version of the package you're using.

Affected packages

Go / github.com/gofiber/fiber/v2
Introduced in: 0 Fixed in: 2.52.13
Fix go get github.com/gofiber/fiber/v2@v2.52.13
Go / github.com/gofiber/fiber/v3
Introduced in: 0 Fixed in: 3.2.0
Fix go get github.com/gofiber/fiber/v3@v3.2.0

References