Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-fxvr-q2f8-9vxv

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 7.5

Описание

cpp-httplib through 0.5.8 does not filter \r\n in parameters passed into the set_redirect and set_header functions, which creates possibilities for CRLF injection and HTTP response splitting in some specific contexts.

cpp-httplib through 0.5.8 does not filter \r\n in parameters passed into the set_redirect and set_header functions, which creates possibilities for CRLF injection and HTTP response splitting in some specific contexts.

EPSS

Процентиль: 37%
0.00163
Низкий

7.5 High

CVSS3

Дефекты

CWE-74

Связанные уязвимости

CVSS3: 7.5
ubuntu
почти 6 лет назад

cpp-httplib through 0.5.8 does not filter \r\n in parameters passed into the set_redirect and set_header functions, which creates possibilities for CRLF injection and HTTP response splitting in some specific contexts.

CVSS3: 7.5
nvd
почти 6 лет назад

cpp-httplib through 0.5.8 does not filter \r\n in parameters passed into the set_redirect and set_header functions, which creates possibilities for CRLF injection and HTTP response splitting in some specific contexts.

CVSS3: 7.5
debian
почти 6 лет назад

cpp-httplib through 0.5.8 does not filter \r\n in parameters passed in ...

EPSS

Процентиль: 37%
0.00163
Низкий

7.5 High

CVSS3

Дефекты

CWE-74