[Low] CVE-2026-49756 – Improper Neutralization of CRLF Sequences ('CRLF Injection') vulnerability in wo...
Low CVE-2026-49756 Improper Neutralization of CRLF Sequences ('CRLF Injection') vulnerability in wojtekmach Req allows multipart parameter smuggling via attacker-influenced part metadata. Req.Utils.encode_form_part/2 in lib/req/utils.ex builds the per-part headers by interpolating the...