摘要:
The llhttp parser in the http module in Node v18.7.0 does not correctly handle header fields that are not terminated with CLRF. This may result in HTTP Request Smuggling.
安全等级: Low
公告ID: KylinSec-SA-2022-2526
发布日期: 2023年9月2日
关联CVE: CVE-2022-35256
The llhttp parser in the http module in Node v18.7.0 does not correctly handle header fields that are not terminated with CLRF. This may result in HTTP Request Smuggling.
cve名称 | 产品 | 组件 | 是否受影响 |
---|