Security Advisory

CVE-2020-5207

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2020-01-27 19:30:15
Last updated 2024-08-04 08:22:09
Assigner GitHub_M
CVSS score 5.4
State PUBLISHED

Description

In Ktor before 1.3.0, request smuggling is possible when running behind a proxy that doesn't handle Content-Length and Transfer-Encoding properly or doesn't handle \n as a headers separator.