Application Security278 Exploiting HTTP Parser Inconsistencies: ACL Bypasses, SSRF, and Cache Poisoning
A deep tour of HTTP parser inconsistencies: how trim/fold/header disagreements between Nginx, WAFs, caches and frameworks (Node.js, Flask, Spring Boot, PHP) enable…
oxfemale·
Jul 28·
18 min
·278

