Authentication Bypass
Discription
github.com/GoogleCloudPlatform/esp-v2 is vulnerable to Authentication Bypass. The vulnerability exists because the library does not properly filter the malicious HTTP headers, which allows an attacker to send maliciously crafted `X-HTTP-Method-Override` header values to bypass JWT authentication in specific cases.Read More
References
Back to Main