apk package
chainguard/py3.12-llhttp
pkg:apk/chainguard/py3.12-llhttp
Vulnerabilities (1)
| CVE | Sev | CVSS | KEV | Affected versions | Fixed in | Published | Description |
|---|---|---|---|---|---|---|---|
| CVE-2022-35256 | Med | 6.5 | < 9.3.0.0-r0 | 9.3.0.0-r0 | Dec 5, 2022 | The llhttp parser in the http module in Node v18.7.0 does not correctly handle header fields that are not terminated with CLRF. This may result in HTTP Request Smuggling. |
- affected < 9.3.0.0-r0fixed 9.3.0.0-r0
The llhttp parser in the http module in Node v18.7.0 does not correctly handle header fields that are not terminated with CLRF. This may result in HTTP Request Smuggling.