CVE-2020-5207

Published
View on NVD ↗
CVSS v3
5.4
MEDIUM
CVSS v2
5
MEDIUM
Affected
1
PROJECT

Description

In Ktor before 1.3.0, request smuggling is possible when running behind a proxy that doesn't handle Content-Length and Transfer-Encoding properly or doesn't handle \n as a headers separator.

Framework for quickly creating connected applications in Kotlin with minimal effort
GitHubGitHub
14.4K