Description
An issue was discovered in Squid through 4.13 and 5.x through 5.0.4. Due to improper input validation, it allows a trusted client to perform HTTP Request Smuggling and access services otherwise forbidden by the security controls. This occurs for certain uri_whitespace configuration settings.
Remediation
References
Related Vulnerabilities
WordPress Plugin Popup Anything-A Marketing Popup Cross-Site Scripting (2.0.3)
WordPress Plugin Post Type Switcher Multiple Unspecified Vulnerabilities (1.5.0)
Oracle Database Server CVE-2008-2587 Vulnerability (CVE-2008-2587)
TYPO3 Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2022-23503)