Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:31434
HistoryJul 30, 2021 - 3:29 a.m.

Request Smuggling

2021-07-3003:29:00
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
23
request smuggling
tomcat-coyote
vulnerability
http transfer-encoding
reverse proxy
http/1.0 response
software

EPSS

0.15

Percentile

95.9%

tomcat-coyote is vulnerable request smuggling. Incorrect way of parsing of the HTTP transfer-encoding request header causes request smuggling when it is used with a reverse proxy and if the client declared it would only accept an HTTP/1.0 response.

References