Header Injection

HTTP header injection — CRLF/response splitting, Host-header cache poisoning, X-Forwarded-* abuse, Content-Disposition/Set-Cookie injection, and password-reset link poisoning via unvalidated header values.

purpleailab af5a3bf 10.4 KB Updated

File contents

purpleailab/decepticon/tree/main/packages/decepticon/decepticon/skills/standard/exploit/web/header-injection commit af5a3bf4d4

Frequently asked questions

npx skillmds@latest add purpleailab/header-injection