Nixpkgs security tracker

Login with GitHub

Suggestion detail

Untriaged
updated 1 month, 2 weeks ago by @LeSuisse Activity log
  • Created suggestion
  • @LeSuisse ignored package haskellPackages.cpython
HTTP client proxy tunnel headers not validated for CR/LF

CR/LF bytes were not rejected by HTTP client proxy tunnel headers or host.

Affected products

http.client
  • <3.15.0
Ignored packages (1)