Loading HuntDB...

GHSA-9564-97j4-99c4

GitHub Security Advisory

⚠ Unreviewed MODERATE Has CVE

Advisory Details

If a server sends two Strict-Transport-Security (STS) headers for a single connection, they will be rejected as invalid and HTTP Strict Transport Security (HSTS) will not be enabled for the connection. This vulnerability affects Firefox < 55.

Related CVEs

Key Information

GHSA ID
GHSA-9564-97j4-99c4
Published
May 13, 2022 1:47 AM
Last Modified
May 13, 2022 1:47 AM
CVSS Score
5.0 /10
Primary Ecosystem
Unknown
Primary Package
Unknown
GitHub Reviewed
✗ No

Dataset

Last updated: September 14, 2025 6:31 AM

Data from GitHub Advisory Database. This information is provided for research and educational purposes.