Skip to content

Commit f66df88

Browse files
committed
h1
1 parent b138af9 commit f66df88

File tree

1 file changed

+1
-1
lines changed

1 file changed

+1
-1
lines changed

crates/pingora-core/RUSTSEC-0000-0000.md

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -21,7 +21,7 @@ unaffected = []
2121

2222
Pingora versions prior to 0.5.0 which used the caching functionality in pingora-proxy did not properly drain the downstream request body on cache hits.
2323

24-
This allows an attacker to craft malicious requests which could lead to request smuggling or cache poisoning.
24+
This allows an attacker to craft malicious HTTP/1.1 requests which could lead to request smuggling or cache poisoning.
2525

2626
This flaw was corrected in commit fda3317ec822678564d641e7cf1c9b77ee3759ff by ensuring that the downstream request body is always drained before a connection can be reused.
2727

0 commit comments

Comments
 (0)