Snyk has a proof-of-concept or detailed explanation of how to exploit this vulnerability.
In a few clicks we can analyze your entire application and see what components are vulnerable in your application, and suggest you quick fixes.
Test your applicationsUpgrade gevent
to version 25.4.1 or higher.
Affected versions of this package are vulnerable to HTTP Request Smuggling due to improper handling of pywsgi
Input._send_100_continue
. An attacker could extract data or compromise data integrity by sending a request with an Expect: 100-continue
header.