Jake Miller and ZeddYu Lu discovered that Twisted incorrectly handled certain content-length headers. A remote attacker could possibly use this issue to perform HTTP request splitting attacks (CVE-2020-10108, CVE-2020-10109).
{ "section": "core" }
"https://advisories.mageia.org/MGASA-2020-0428.json"