Skip to main content
Loading…
    CVE-2023-38199 — coreruleset (aka OWASP ModSecurity Core Rule Set) through 3.3.4 does not detect multiple Content-Type request headers on some platforms. This might allow attackers to bypass a WAF with a crafted paylo — CVE Database · The Intelligence Room