RSS   Vulnerabilities for 'Psr-7'   RSS

2022-03-21
 
CVE-2022-24775

CWE-20
 

 
guzzlehttp/psr7 is a PSR-7 HTTP message library. Versions prior to 1.8.4 and 2.1.1 are vulnerable to improper header parsing. An attacker could sneak in a new line character and pass untrusted values. The issue is patched in 1.8.4 and 2.1.1. There are currently no known workarounds.

 

 >>> Vendor: Guzzlephp 2 Products
Psr-7
Guzzle


Copyright 2024, cxsecurity.com

 

Back to Top