In a few clicks we can analyze your entire application and see what components are vulnerable in your application, and suggest you quick fixes.
Test your applicationsUpgrade io.quarkus.http:quarkus-http-core
to version 5.3.4 or higher.
Affected versions of this package are vulnerable to HTTP Request Smuggling due to the incorrect parsing of cookies with certain value-delimiting characters in incoming requests. An attacker can exfiltrate HttpOnly cookie values or spoof arbitrary additional cookie values, leading to unauthorized data access or modification.