Monday, January 11, 2021
CVE-2021-3116
nist.gov
In: nist.gov
before_upstream_connection in AuthPlugin in http/proxy/auth.py in proxy.py before 2.3.1 accepts incorrect Proxy-Authorization header data because of a boolean confusion (and versus or). CVE-2021-3116