Property
Languagego
Severityhigh
CWECWE-319: Cleartext Transmission of Sensitive Information
OWASPA03:2017 - Sensitive Data Exposure
Confidence LevelMedium
Impact LevelMedium
Likelihood LevelHigh

Description#

The application is making HTTP requests using the gorequest library without encryption. This exposes any data sent or received—including sensitive information like personal details or credentials—to interception by attackers on the network.

Impact#

If exploited, attackers could eavesdrop on or manipulate data transmitted between your application and external servers. This could lead to sensitive user information being stolen, account compromise, or regulatory violations due to unprotected data in transit.