• caglararli@hotmail.com
  • 05386281520

CVE-2024-51501 | reactiveui refit up to 7.x HttpHeaders.TryAddWithoutValidation Header/HeaderCollection/Authorize crlf injection (GHSA-3hxg-fxwm-8gf7)

Çağlar Arlı      -    35 Views

CVE-2024-51501 | reactiveui refit up to 7.x HttpHeaders.TryAddWithoutValidation Header/HeaderCollection/Authorize crlf injection (GHSA-3hxg-fxwm-8gf7)

A vulnerability classified as problematic has been found in reactiveui refit up to 7.x. This affects the function HttpHeaders.TryAddWithoutValidation. The manipulation of the argument Header/HeaderCollection/Authorize leads to crlf injection. This vulnerability is uniquely identified as CVE-2024-51501. It is possible to initiate the attack remotely. There is no exploit available. It is recommended to upgrade the affected component.