HTTP Response Splitting in WSO2 Transport Package by WSO2
CVE-2019-10797
6.5MEDIUM
What is CVE-2019-10797?
The WSO2 Transport HTTP package prior to version 6.3.1 is susceptible to an HTTP Response Splitting vulnerability due to the lack of proper HTTP Header validation. This flaw could allow attackers to manipulate HTTP responses, potentially leading to misleading web content or even exploitation of user sessions. It is essential for organizations using this version to implement appropriate mitigations.
Affected Version(s)
WSO2 transport-http All versions prior to version v6.3.1
