Vulnerabilities
Vulnerable Software
Gofiber:  >> Fiber  >> 3.3.0  Security Vulnerabilities
Fiber is an Express inspired web framework written in Go. Prior to 3.4.0, the helmet middleware in middleware/helmet/helmet.go never sets the Strict-Transport-Security response header even when HSTSMaxAge is configured because it checks c.Protocol() for https instead of c.Scheme(). This issue is fixed in version 3.4.0.
CVSS Score
4.8
EPSS Score
0.002
Published
2026-07-08


Contact Us

Shodan ® - All rights reserved