It was found that Quarkus 2.10.x does not terminate HTTP requests header context which may lead to unpredictable behavior.
References
Link | Resource |
---|---|
https://github.com/quarkusio/quarkus/issues/26748 | Exploit Issue Tracking Third Party Advisory |
Configurations
History
06 Sep 2022, 22:09
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2022-08-31 16:15
Updated : 2024-02-04 22:51
NVD link : CVE-2022-2466
Mitre link : CVE-2022-2466
CVE.ORG link : CVE-2022-2466
JSON object : View
Products Affected
quarkus
- quarkus
CWE
CWE-444
Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling')