Описание
When using http.cookies.Morsel, user-controlled cookie values and parameters can allow injecting HTTP headers into messages. Patch rejects all control characters within cookie names, values, and parameters.
Ссылки
EPSS
Процентиль: 16%
0.0005
Низкий
Дефекты
CWE-93
Связанные уязвимости
ubuntu
18 дней назад
When using http.cookies.Morsel, user-controlled cookie values and parameters can allow injecting HTTP headers into messages. Patch rejects all control characters within cookie names, values, and parameters.
debian
18 дней назад
When using http.cookies.Morsel, user-controlled cookie values and para ...
github
17 дней назад
When using http.cookies.Morsel, user-controlled cookie values and parameters can allow injecting HTTP headers into messages. Patch rejects all control characters within cookie names, values, and parameters.
EPSS
Процентиль: 16%
0.0005
Низкий
Дефекты
CWE-93