0.23.30
3 years ago
9 months ago
Known vulnerabilities in the org.http4s:http4s-ember-core_native0.4_3 package. This does not include vulnerabilities belonging to this package’s dependencies.
Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.
Fix for freeVulnerability | Vulnerable Version |
---|---|
Affected versions of this package are vulnerable to HTTP Request Smuggling due to improper parsing of the HTTP trailer section in the Note: This is only exploitable if the application is deployed behind a reverse-proxy that forwards trailer headers. How to fix HTTP Request Smuggling? Upgrade | [,0.23.31)[1.0.0-M37,1.0.0-M45) |