Feed/CVE-2017-12165
CVE-2017-12165LOWCVSS 2.6

CVE-2017-12165

Published Jul 27, 2018·Updated Jun 16, 2026

NVD Description

It was discovered that Undertow before 1.4.17, 1.3.31 and 2.0.0 processes http request headers with unusual whitespaces which can cause possible http request smuggling.

CVSS Vector

CVSS:3.0/AV:N/AC:H/PR:L/UI:R/S:U/C:N/I:L/A:N

References

View on NVD Search GitHub Search Google

Get alerted for CVEs like this

Register your stack and get notified within minutes when a matching CVE drops.

Start monitoring free