** DISPUTED ** Improper parsing of... CVE-2022-29361

7.5 AV AC AU C I A
发布: 2022-05-25
修订: 2024-11-21

** DISPUTED ** Improper parsing of HTTP requests in Pallets Werkzeug v2.1.0 and below allows attackers to perform HTTP Request Smuggling using a crafted HTTP request with multiple requests included inside the body. NOTE: the vendor's position is that this behavior can only occur in unsupported configurations involving development mode and an HTTP server from outside the Werkzeug project.

0%
暂无可用Exp或PoC
当前有1条受影响产品信息