All versions of io.micronaut:micronaut-http-client before 1.2.11 and all versions from 1.3.0 before 1.3.2 are vulnerable to HTTP Request Header Injection due to not validating request headers passed to the client.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2020-0334 | All versions of io.micronaut:micronaut-http-client before 1.2.11 and all versions from 1.3.0 before 1.3.2 are vulnerable to HTTP Request Header Injection due to not validating request headers passed to the client. |
Github GHSA |
GHSA-694p-xrhg-x3wm | Micronaut's HTTP client is vulnerable to HTTP Request Header Injection |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.
Status: PUBLISHED
Assigner: snyk
Published:
Updated: 2024-08-04T09:33:19.963Z
Reserved: 2020-01-21T00:00:00.000Z
Link: CVE-2020-7611
No data.
Status : Modified
Published: 2020-03-30T22:15:15.603
Modified: 2024-11-21T05:37:28.277
Link: CVE-2020-7611
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD
Github GHSA