A vulnerability was identified in MediaCrush 1.0.0/1.0.1. The affected element is an unknown function of the file /mediacrush/paths.py of the component Header Handler. Such manipulation of the argument Host leads to improper neutralization of http headers for scripting syntax. The attack can be launched remotely.
References
Configurations
No configuration.
History
01 Dec 2025, 03:15
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2025-12-01 03:15
Updated : 2025-12-01 15:39
NVD link : CVE-2025-13803
Mitre link : CVE-2025-13803
CVE.ORG link : CVE-2025-13803
JSON object : View
Products Affected
No product.
CWE
CWE-644
Improper Neutralization of HTTP Headers for Scripting Syntax
