Lucene search

K
osvGoogleOSV:GHSA-MH24-7WVG-V88G
HistoryJan 30, 2019 - 8:56 p.m.

CRLF Injection in pypiserver

2019-01-3020:56:26
Google
osv.dev
34

EPSS

0.001

Percentile

45.0%

CRLF Injection in pypiserver 1.2.5 and below allows attackers to set arbitrary HTTP headers and possibly conduct XSS attacks via a %0d%0a in a URI.

EPSS

0.001

Percentile

45.0%

Related for OSV:GHSA-MH24-7WVG-V88G