VYPR
High severity7.5NVD Advisory· Published Apr 12, 2020· Updated Jun 17, 2026

CVE-2020-11724

CVE-2020-11724

Description

An issue was discovered in OpenResty before 1.15.8.4. ngx_http_lua_subrequest.c allows HTTP request smuggling, as demonstrated by the ngx.location.capture API.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

5
  • OpenResty/OpenRestydescription
  • OpenResty/Openrestyllm-fuzzy2 versions
    <1.15.8.4+ 1 more
    • (no CPE)range: <1.15.8.4
    • cpe:2.3:a:openresty:openresty:*:*:*:*:*:*:*:*range: <1.15.8.4
  • Debian/linux2 versions
    cpe:2.3:o:debian:debian_linux:9.0:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:o:debian:debian_linux:9.0:*:*:*:*:*:*:*
    • cpe:2.3:o:debian:debian_linux:10.0:*:*:*:*:*:*:*

Patches

Vulnerability mechanics

References

5

News mentions

0

No linked articles in our index yet.