[issue39603] [security] http.client: HTTP Header Injection in the HTTP method

Max report at bugs.python.org
Tue Feb 11 09:13:39 EST 2020


Max <maxpl0it at protonmail.com> added the comment:

I agree that the solution is quite restrictive.
Restricting to ASCII characters alone would certainly work.

----------

_______________________________________
Python tracker <report at bugs.python.org>
<https://bugs.python.org/issue39603>
_______________________________________


More information about the Python-bugs-list mailing list