Fedora nodejs CVE-2019-15605 HTTP Request Smuggling Vulnerability

description-logoDescription

A flaw was found in the Node.js code where a specially crafted HTTP(s) request sent to a Node.js server failed to properly process the HTTP(s) headers, resulting in a request smuggling attack. An attacker can use this flaw to alter a request sent as an authenticated user if the Node.js server is deployed behind a proxy server that reuses connections.

affected-products-logoAffected Applications

nodejs

CVE References

CVE-2019-15605