Headers Generic Header Injection
Untrusted user input in response header will result in HTTP Header Injection or Response Splitting Attacks.
IndexedPublic repositoryHighMedium confidenceVerifiedLGPL-3.0-onlyjavascript
greprules fetch gitlab-sast-rules-lgpl-javascript-headers-rule-generic-header-injection --engine opengrepDescription
Untrusted user input in response header will result in HTTP Header Injection or Response Splitting Attacks.
Detection target
Not provided
Recommended fix
Not provided
False-positive notes
Not provided
Community feedback
Sign in to report false positives, mark this rule useful, or suggest metadata improvements.