CVE-2022-25881
31.01.2023, 05:15
This affects versions of the package http-cache-semantics before 4.1.1. The issue can be exploited via malicious request header values sent to a server, when that server reads the cache policy from the request using this library.Enginsight
Vendor | Product | Version |
---|---|---|
http-cache-semantics_project | http-cache-semantics | 𝑥 < 4.1.1 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References