Description
mime_header.cc in Squid before 3.5.18 allows remote attackers to bypass intended same-origin restrictions and possibly conduct cache-poisoning attacks via a crafted HTTP Host header, aka a "header smuggling" issue.
Remediation
References
Related Vulnerabilities
WordPress Plugin ImageBoss-Images Up To 60% Smaller & CDN Cross-Site Scripting (3.0.4)
Resin Application Server Other Vulnerability (CVE-2004-0281)
WordPress Plugin User Role Editor Security Bypass (4.24)
Python Cryptographic Issues Vulnerability (CVE-2012-1150)
WordPress Plugin Breezing Forms Cross-Site Scripting (1.2.7.42)