Inconsistent interpretation of http requests ('http request/response smuggling') in ASP.NET Core allows an authorized attacker to bypass a security feature over a network.
PoC: CVE-2025-55315-repro
Tool that reproduces CVE-2025-55315 in ASP.NET Core.
PoC: CVE-2025-55315
Proof-of-concept exploit for CVE-2025-55315 (.NET HTTP Request Smuggling). Demonstrates how improperly parsed chunked encoding lets attackers smuggle requests past proxies and load balancers in vulnerable ASP.NET Core/Kestrel servers.
PoC: CVE-2025-55315-PoC-Exploit
CVE-2025-55315 PoC Exploit
PoC: CVE-2025-55315-Scanner-Monitor
Quick and Simple Scripts to Scan for Vulnerable Servers and Packet Level Monitors
PoC: CVE-2025-55315-
专业级HTTP请求走私漏洞利用与自动化渗透测试工具
PoC: CVE-2025-55315-detection-playground
Playground to experiment with different behavior on patched/unpatched Kestrel for the CVE-2025-55315 HTTP smuggling vulnerability
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:L
Get alerted for CVEs like this
Register your stack and get notified within minutes when a matching CVE drops.
Start monitoring free