Description
NGINX before 1.17.7, with certain error_page configurations, allows HTTP request smuggling, as demonstrated by the ability of an attacker to read unauthorized web pages in environments where NGINX is being fronted by a load balancer.
Remediation
References
Related Vulnerabilities
WordPress Other Vulnerability (CVE-2007-2627)
WordPress Plugin Microblog Poster SQL Injection (1.6.1)
Apache HTTP Server Resource Management Errors Vulnerability (CVE-2016-8740)
MySQL CVE-2015-0409 Vulnerability (CVE-2015-0409)
WordPress Plugin Social Auto Poster-WordPress Scheduler & Marketing Cross-Site Scripting (5.3.14)