Endpoint Vulnerability

CVE-2020-5249rubygem-puma: attacker is able to use carriage return character to insert malicious content (HTTP Response Splitting), this could lead to XSS [fedora-all]

Description

attacker is able to use carriage return character to insert malicious content (HTTP Response Splitting), this could lead to XSS [fedora-all]

Affected Products

rubygem-puma

References

CVE-2020-5249,