CRLF injection
Medium
X
X (Formerly Twitter)
Submitted None
Actions:
Reported by
s3c
Vulnerability Details
Technical details and impact analysis
Hello twiiter security team,
on the domain ads.twitter.com http response splitting is vulnerability.
PoC:
https://ads.twitter.com/subscriptions/mobile/landing?ref=gl-tw-tw-promote-mode?t=%0d%0atest:tested
## Impact
an attacker can set new header
Report Details
Additional information and metadata
State
Closed
Substate
Resolved