CVE-2021-38512
10.08.2021, 23:15
An issue was discovered in the actix-http crate before 3.0.0-beta.9 for Rust. HTTP/1 request smuggling (aka HRS) can occur, potentially leading to credential disclosure.
Vendor | Product | Version |
---|---|---|
actix | actix-http | 𝑥 < 3.0.0 |
actix | actix-http | 3.0.0 |
actix | actix-http | 3.0.0:beta1 |
actix | actix-http | 3.0.0:beta2 |
actix | actix-http | 3.0.0:beta3 |
actix | actix-http | 3.0.0:beta4 |
actix | actix-http | 3.0.0:beta5 |
actix | actix-http | 3.0.0:beta6 |
actix | actix-http | 3.0.0:beta7 |
actix | actix-http | 3.0.0:beta8 |
𝑥
= Vulnerable software versions
References