5Kas
CVE-2024-51501 | reactiveui refit up to 7.x HttpHeaders.TryAddWithoutValidation Header/HeaderCollection/Authorize crlf injection (GHSA-3hxg-fxwm-8gf7)
A vulnerability classified as problematic has been found in reactiveui refit up to 7.x. This affects the functionHttpHeaders.TryAddWithoutValidation
. The manipulation of the argument Header/HeaderCollection/Authorize leads to crlf injection.
This vulnerability is uniquely identified as CVE-2024-51501. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.