296,147
Total vulnerabilities in the database
It was discovered that Undertow before 1.4.17, 1.3.31 and 2.0.0 processes http request headers with unusual whitespaces which can cause possible http request smuggling.
Software | From | Fixed in |
---|---|---|
redhat / undertow | 1.4.0 | 1.4.17 |
redhat / undertow | 1.0.0 | 1.3.31 |
redhat / undertow | 2.0.0-alpha_1 | 2.0.0-alpha_1.x |
redhat / jboss_enterprise_application_platform | 7.1.0 | 7.1.0.x |
redhat / jboss_enterprise_application_platform | 7.0.0 | 7.0.0.x |
![]() |
- | 1.3.31 |
![]() |
1.4.0 | 1.4.17 |
![]() |
2.0.0.Alpha1 | 2.0.0.alpha1.x |
![]() |
2.0.0.Alpha1 | 2.0.0.Beta1 |