Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:36883
HistorySep 01, 2022 - 8:03 a.m.

HTTP Request Smuggling

2022-09-0108:03:15
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
14
quarkus
http request smuggling
smallryegraphqlabstracthandler

0.002 Low

EPSS

Percentile

57.2%

Quarkus is vulnerable to HTTP request smuggling. The vulnerability exists in handle function in SmallRyeGraphQLAbstractHandler.java due to incomplete termination of the HTTP request header which allows an attacker to smuggle HTTP requests by submitting malicious headers.

0.002 Low

EPSS

Percentile

57.2%