HTTP/1 Request Smuggling Vulnerability in Actix-HTTP Crate by Rust
CVE-2021-38512
7.5HIGH
What is CVE-2021-38512?
A vulnerability has been identified in the actix-http crate for Rust that allows for HTTP/1 request smuggling. This issue can expose sensitive information through unintended credential disclosure, posing a risk to web applications that utilize this library. It's crucial for developers using actix-http versions earlier than 3.0.0-beta.9 to review their implementations and apply necessary updates or mitigations to ensure the integrity of their applications.
