github.com/corazawaf/coraza/v2
OWASP Coraza WAF is a golang modsecurity compatible web application firewall library
Activity
- Latest release
- 4y ago
- Total releases
- 11
- Cadence
- ~11 days
- Last 12 months
- 0
Reach
- Stars
- 3.7k
Details
- First release
- Nov 14, 2021
| Version | Released | |
|---|---|---|
v2.0.1
patch
2 CVEs
CVE-2025-29914
GO-2025-3537
GHSA-q9f5-625g-xm39
Mar 25, 2025
OWASP Coraza WAF has parser confusion which leads to wrong URI in `REQUEST_FILENAME` in github.com/corazawaf/coraza OWASP Coraza WAF has parser confusion which leads to wrong URI in References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2023-40586
GO-2023-1874
GHSA-c2pj-v37r-2p6h
Jul 05, 2023
Denial of service in github.com/corazawaf/coraza/v2 and v3 Due to the misuse of log.Fatalf, Coraza may crash after receiving crafted requests from attackers. References Updated May 20, 2024 · Source: OSV.dev |
v2.0.1
patch
Dependencies (6)
|
|
v2.0.0
initial
2 CVEs
CVE-2025-29914
GO-2025-3537
GHSA-q9f5-625g-xm39
Mar 25, 2025
OWASP Coraza WAF has parser confusion which leads to wrong URI in `REQUEST_FILENAME` in github.com/corazawaf/coraza OWASP Coraza WAF has parser confusion which leads to wrong URI in References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2023-40586
GO-2023-1874
GHSA-c2pj-v37r-2p6h
Jul 05, 2023
Denial of service in github.com/corazawaf/coraza/v2 and v3 Due to the misuse of log.Fatalf, Coraza may crash after receiving crafted requests from attackers. References Updated May 20, 2024 · Source: OSV.dev |
v2.0.0
initial
Dependencies (5)
|
|
v2.0.0-rc.3
pre
2 CVEs
CVE-2025-29914
GO-2025-3537
GHSA-q9f5-625g-xm39
Mar 25, 2025
OWASP Coraza WAF has parser confusion which leads to wrong URI in `REQUEST_FILENAME` in github.com/corazawaf/coraza OWASP Coraza WAF has parser confusion which leads to wrong URI in References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2023-40586
GO-2023-1874
GHSA-c2pj-v37r-2p6h
Jul 05, 2023
Denial of service in github.com/corazawaf/coraza/v2 and v3 Due to the misuse of log.Fatalf, Coraza may crash after receiving crafted requests from attackers. References Updated May 20, 2024 · Source: OSV.dev |
v2.0.0-rc.3
pre
Dependencies (5)
|
|
v2.0.0-rc.2
pre
2 CVEs
CVE-2025-29914
GO-2025-3537
GHSA-q9f5-625g-xm39
Mar 25, 2025
OWASP Coraza WAF has parser confusion which leads to wrong URI in `REQUEST_FILENAME` in github.com/corazawaf/coraza OWASP Coraza WAF has parser confusion which leads to wrong URI in References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2023-40586
GO-2023-1874
GHSA-c2pj-v37r-2p6h
Jul 05, 2023
Denial of service in github.com/corazawaf/coraza/v2 and v3 Due to the misuse of log.Fatalf, Coraza may crash after receiving crafted requests from attackers. References Updated May 20, 2024 · Source: OSV.dev |
v2.0.0-rc.2
pre
Dependencies (5)
|
|
v2.0.0-rc.1
pre
2 CVEs
CVE-2025-29914
GO-2025-3537
GHSA-q9f5-625g-xm39
Mar 25, 2025
OWASP Coraza WAF has parser confusion which leads to wrong URI in `REQUEST_FILENAME` in github.com/corazawaf/coraza OWASP Coraza WAF has parser confusion which leads to wrong URI in References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2023-40586
GO-2023-1874
GHSA-c2pj-v37r-2p6h
Jul 05, 2023
Denial of service in github.com/corazawaf/coraza/v2 and v3 Due to the misuse of log.Fatalf, Coraza may crash after receiving crafted requests from attackers. References Updated May 20, 2024 · Source: OSV.dev |
v2.0.0-rc.1
pre
Dependencies (4)
|
|
v2.0.0-beta.6
pre
2 CVEs
CVE-2025-29914
GO-2025-3537
GHSA-q9f5-625g-xm39
Mar 25, 2025
OWASP Coraza WAF has parser confusion which leads to wrong URI in `REQUEST_FILENAME` in github.com/corazawaf/coraza OWASP Coraza WAF has parser confusion which leads to wrong URI in References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2023-40586
GO-2023-1874
GHSA-c2pj-v37r-2p6h
Jul 05, 2023
Denial of service in github.com/corazawaf/coraza/v2 and v3 Due to the misuse of log.Fatalf, Coraza may crash after receiving crafted requests from attackers. References Updated May 20, 2024 · Source: OSV.dev |
v2.0.0-beta.6
pre
Dependencies (4)
|
|
v2.0.0-beta.5
pre
2 CVEs
CVE-2025-29914
GO-2025-3537
GHSA-q9f5-625g-xm39
Mar 25, 2025
OWASP Coraza WAF has parser confusion which leads to wrong URI in `REQUEST_FILENAME` in github.com/corazawaf/coraza OWASP Coraza WAF has parser confusion which leads to wrong URI in References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2023-40586
GO-2023-1874
GHSA-c2pj-v37r-2p6h
Jul 05, 2023
Denial of service in github.com/corazawaf/coraza/v2 and v3 Due to the misuse of log.Fatalf, Coraza may crash after receiving crafted requests from attackers. References Updated May 20, 2024 · Source: OSV.dev |
v2.0.0-beta.5
pre
Dependencies (4)
|
|
v2.0.0-beta.4
pre
2 CVEs
CVE-2025-29914
GO-2025-3537
GHSA-q9f5-625g-xm39
Mar 25, 2025
OWASP Coraza WAF has parser confusion which leads to wrong URI in `REQUEST_FILENAME` in github.com/corazawaf/coraza OWASP Coraza WAF has parser confusion which leads to wrong URI in References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2023-40586
GO-2023-1874
GHSA-c2pj-v37r-2p6h
Jul 05, 2023
Denial of service in github.com/corazawaf/coraza/v2 and v3 Due to the misuse of log.Fatalf, Coraza may crash after receiving crafted requests from attackers. References Updated May 20, 2024 · Source: OSV.dev |
v2.0.0-beta.4
pre
Dependencies (4)
|
|
v2.0.0-beta.3
pre
2 CVEs
CVE-2025-29914
GO-2025-3537
GHSA-q9f5-625g-xm39
Mar 25, 2025
OWASP Coraza WAF has parser confusion which leads to wrong URI in `REQUEST_FILENAME` in github.com/corazawaf/coraza OWASP Coraza WAF has parser confusion which leads to wrong URI in References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2023-40586
GO-2023-1874
GHSA-c2pj-v37r-2p6h
Jul 05, 2023
Denial of service in github.com/corazawaf/coraza/v2 and v3 Due to the misuse of log.Fatalf, Coraza may crash after receiving crafted requests from attackers. References Updated May 20, 2024 · Source: OSV.dev |
v2.0.0-beta.3
pre
Dependencies (4)
|
|
v2.0.0-beta.2
pre
2 CVEs
CVE-2025-29914
GO-2025-3537
GHSA-q9f5-625g-xm39
Mar 25, 2025
OWASP Coraza WAF has parser confusion which leads to wrong URI in `REQUEST_FILENAME` in github.com/corazawaf/coraza OWASP Coraza WAF has parser confusion which leads to wrong URI in References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2023-40586
GO-2023-1874
GHSA-c2pj-v37r-2p6h
Jul 05, 2023
Denial of service in github.com/corazawaf/coraza/v2 and v3 Due to the misuse of log.Fatalf, Coraza may crash after receiving crafted requests from attackers. References Updated May 20, 2024 · Source: OSV.dev |
v2.0.0-beta.2
pre
Dependencies (4)
|
|
v2.0.0-alpha.1
pre
2 CVEs
CVE-2025-29914
GO-2025-3537
GHSA-q9f5-625g-xm39
Mar 25, 2025
OWASP Coraza WAF has parser confusion which leads to wrong URI in `REQUEST_FILENAME` in github.com/corazawaf/coraza OWASP Coraza WAF has parser confusion which leads to wrong URI in References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2023-40586
GO-2023-1874
GHSA-c2pj-v37r-2p6h
Jul 05, 2023
Denial of service in github.com/corazawaf/coraza/v2 and v3 Due to the misuse of log.Fatalf, Coraza may crash after receiving crafted requests from attackers. References Updated May 20, 2024 · Source: OSV.dev |
v2.0.0-alpha.1
pre
Dependencies (4)
|