Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-cq5q-38rc-vwrj

Опубликовано: 29 авг. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 4

Описание

Akamai Ghost before 2025-07-21 allows HTTP Request Smuggling via an OPTIONS request that has an entity body, because there can be a subsequent request within the persistent connection between an Akamai proxy server and an origin server, if the origin server violates certain Internet standards.

Akamai Ghost before 2025-07-21 allows HTTP Request Smuggling via an OPTIONS request that has an entity body, because there can be a subsequent request within the persistent connection between an Akamai proxy server and an origin server, if the origin server violates certain Internet standards.

EPSS

Процентиль: 8%
0.00029
Низкий

4 Medium

CVSS3

Дефекты

CWE-444

Связанные уязвимости

CVSS3: 4
nvd
5 месяцев назад

Akamai Ghost before 2025-07-21 allows HTTP Request Smuggling via an OPTIONS request that has an entity body, because there can be a subsequent request within the persistent connection between an Akamai proxy server and an origin server, if the origin server violates certain Internet standards.

EPSS

Процентиль: 8%
0.00029
Низкий

4 Medium

CVSS3

Дефекты

CWE-444