Loading...
Loading...
CGI.pm module before 3.63 for Perl does not properly escape newlines in (1) Set-Cookie or (2) P3P headers, which might allow remote attackers to inject arbitrary headers into responses from applications that use CGI.pm.
November 21, 2012
April 29, 2026
See which npm, PyPI, Go, and Maven packages are affected by CVE-2012-5526
EchelonGraph automatically scans your cloud infrastructure and maps CVE exposure using blast radius analysis.