The probability is the direct output of the EPSS model, and conveys an overall sense of the threat of exploitation in the wild. The percentile measures the EPSS probability relative to all known EPSS scores. Note: This data is updated daily, relying on the latest available EPSS model version. Check out the EPSS documentation for more details.
In a few clicks we can analyze your entire application and see what components are vulnerable in your application, and suggest you quick fixes.
Test your applicationsUpgrade slice-deque to version 0.1.16 or higher.
slice-deque is a double-ended queue that Derefs into a slice, also known as a ring buffer or circular buffer.
Affected versions of this package are vulnerable to Uninitialized Memory Exposure. It did not properly update the head and tail of the deque when inserting and removing elements from the front if. An attacker who controls both element insertion and removal into the deque could insert a corrupted state. Once the deque enters such a state, its head and tail are corrupted, but in the bounds of the allocated memory.