Description
mime_header.cc in Squid before 3.5.18 allows remote attackers to bypass intended same-origin restrictions and possibly conduct cache-poisoning attacks via a crafted HTTP Host header, aka a "header smuggling" issue.
Remediation
References
Related Vulnerabilities
WordPress Plugin WooCommerce Affiliate-Coupon Affiliates Cross-Site Scripting (4.11.0.1)
IBM WebSEAL Other Vulnerability (CVE-2023-30998)
TYPO3 Improper Authentication Vulnerability (CVE-2014-3944)
WordPress 4.5.x Denial of Service Vulnerability (4.5 - 4.5.13)
Moodle Improper Input Validation Vulnerability (CVE-2018-1137)