ShadowTrackr

Search the CVE vulnerability database

Look up vulnerabilities by software, product or CVE number.

1 result for “CVE-2020-25017”

CVEPublishedCVSSShadowTrackr CVSSSummary
CVE:
CVE-2020-25017
Published
2020-10-01
CVSS:
8.3
ShadowTrackr CVSS:
1.7
Summary:
Envoy through 1.15.0 only considers the first value when multiple header values are present for some HTTP headers. Envoy’s setCopy() header map API does not replace all existing occurences of a non-inline header.