CVE

CVE-2022-32213

CVE-2022-32213

The llhttp parser in the http module in Node.js v17.x does not correctly parse and validate Transfer-Encoding headers and can lead to HTTP Request Smuggling (HRS).

Source: CVE-2022-32213

Exit mobile version