CVE-2020-24553 | Google Go up to 1.14.7/1.15.0 CGI Content-Type Header cross site scripting (Nessus ID 210543)
A vulnerability was found in Google Go up to 1.14.7/1.15.0 and classified as problematic. Affected by this issue is some unknown functionality of the component CGI Handler. The manipulation as part of Content-Type Header leads to cross site scripting.
This vulnerability is handled as CVE-2020-24553. The attack may be launched remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.