CVE-2026-0865

Updated on 20 Jan 2026

Severity

Awaiting Analysis

Overview

About vulnerability

User-controlled header names and values containing newlines can allow injecting HTTP headers.

Details

Affected packages:
python2 @ 2.7.18 (+11 more)
User-controlled header names and values containing newlines can allow injecting HTTP headers.

Fixes