Lucene search

K
osvGoogleOSV:GHSA-P979-4MFW-53VG
HistoryOct 11, 2019 - 6:41 p.m.

HTTP Request Smuggling in Netty

2019-10-1118:41:23
Google
osv.dev
36

0.012 Low

EPSS

Percentile

85.6%

Netty before 4.1.42.Final mishandles whitespace before the colon in HTTP headers (such as a “Transfer-Encoding : chunked” line), which leads to HTTP request smuggling.

References