Description
Netty in WSO2 transport-http before v6.3.1 is vulnerable to HTTP Response Splitting due to HTTP Header validation being disabled.
Remediation
References
https://snyk.io/vuln/SNYK-JAVA-ORGWSO2TRANSPORTHTTP-548944
Related Vulnerabilities
CVE-2019-10773 Vulnerability in npm package @pnpm/package-bins
CVE-2019-16869 Vulnerability in maven package io.netty:netty-all
CVE-2021-4279 Vulnerability in maven package org.webjars.bower:fast-json-patch
CVE-2014-7810 Vulnerability in maven package org.apache.tomcat:tomcat-jasper
CVE-2021-29485 Vulnerability in maven package io.ratpack:ratpack-session