Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:22349
HistoryJan 23, 2020 - 5:56 a.m.

CRLF Injection

2020-01-2305:56:36
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
15

EPSS

0.001

Percentile

38.5%

secure_headers is vulnerable to CRLF injection. A newline character can be used to write arbitrary value into the Content-Security-Policy header via append/override_content_security_policy_directives.