Lucene search

K
cvelistMitreCVELIST:CVE-2021-33621
HistoryNov 18, 2022 - 12:00 a.m.

CVE-2021-33621

2022-11-1800:00:00
mitre
www.cve.org
2
cgi gem
ruby
http response splitting
untrusted user input

8.9 High

AI Score

Confidence

High

0.004 Low

EPSS

Percentile

74.8%

The cgi gem before 0.1.0.2, 0.2.x before 0.2.2, and 0.3.x before 0.3.5 for Ruby allows HTTP response splitting. This is relevant to applications that use untrusted user input either to generate an HTTP response or to create a CGI::Cookie object.