Description
In PHP from 8.1.* before 8.1.32, from 8.2.* before 8.2.28, from 8.3.* before 8.3.19, from 8.4.* before 8.4.5, when http request module parses HTTP response obtained from a server, folded headers are parsed incorrectly, which may lead to misinterpreting the response and using incorrect headers, MIME types, etc.
Remediation
References
Related Vulnerabilities
Squid Improper Input Validation Vulnerability (CVE-2016-2572)
WordPress Plugin Bird Feeder Multiple Vulnerabilities (1.2.3)
WordPress Plugin Advanced Custom Fields (ACF) PHP Object Injection (5.7.10)
WordPress 4.5.x Multiple Vulnerabilities (4.5 - 4.5.8)
WordPress Plugin Share Buttons by AddThis Cross-Site Scripting (4.0.7)