Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:31779
HistoryAug 22, 2021 - 1:42 p.m.

Header Splitting Attack

2021-08-2213:42:46
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
11
firefox
header splitting attack
http/3

EPSS

0.002

Percentile

53.0%

firefox:sid is vulnerable to header splitting attack. Firefox incorrectly accepted a newline in a HTTP/3 header, interpreting it as two separate headers, allowing a header splitting attack against servers using HTTP/3.