Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:27288
HistoryOct 01, 2020 - 1:43 a.m.

Carriage-Return Line-Feed (CRLF) Injection

2020-10-0101:43:17
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
32

0.004 Low

EPSS

Percentile

74.7%

urllib3 is vulnerable to carriage-return line-feed (CRLF) injection. The vulnerability exists as it does not sufficiently check for non-token characters, allowing characters such as \r, \n to be parsed and interpreted.