An issue exists in Netdata 1.10.0. HTTP Header Injection exists via the api/v1/data filename parameter because of web_client_api_request_v1_data in web/api/web_api_v1.c.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
my-netdata netdata 1.10.0 |