CVE-2023-29530
- EPSS 0.18%
- Published 24.04.2023 20:15:08
- Last modified 21.11.2024 07:57:14
Laminas Diactoros provides PSR HTTP Message implementations. In versions 2.18.0 and prior, 2.19.0, 2.20.0, 2.21.0, 2.22.0, 2.23.0, 2.24.0, and 2.25.0, users who create HTTP requests or responses using laminas/laminas-diactoros, when providing a newli...
CVE-2023-29197
- EPSS 2.29%
- Published 17.04.2023 22:15:09
- Last modified 21.11.2024 07:56:41
guzzlehttp/psr7 is a PSR-7 HTTP message library implementation in PHP. Affected versions are subject to improper header parsing. An attacker could sneak in a newline (\n) into both the header names and values. While the specification states that \r\n...
CVE-2022-24775
- EPSS 0.67%
- Published 21.03.2022 19:15:11
- Last modified 21.11.2024 06:51:04
guzzlehttp/psr7 is a PSR-7 HTTP message library. Versions prior to 1.8.4 and 2.1.1 are vulnerable to improper header parsing. An attacker could sneak in a new line character and pass untrusted values. The issue is patched in 1.8.4 and 2.1.1. There ar...