B3NCLOUD ARTICLE INTELLIGENCE

ARTICLEVIEW

Zurück zu News

[Low] CVE-2026-44546 – daphne before 4.2.2 reconstructs a raw HTTP request from Twisted's parsed header...

Low CVE-2026-44546 daphne before 4.2.2 reconstructs a raw HTTP request from Twisted's parsed headers and feeds it to autobahn for WebSocket handshake processing. Twisted does not treat \x0b, \x0c, \x1c, \x1d, \x1e, or \x85 as header line separators, but autobahn decodes header values to str and...

Original-Artikel öffnen Zurück zur Übersicht