Field Assessment
AI analysis pending.
CVE
CVE-2020-10109
Severity
CRITICAL
CVSS
9.8
EPSS
3.29%
Original Filing — NVD Description
In Twisted Web through 19.10.0, there was an HTTP request splitting vulnerability. When presented with a content-length and a chunked encoding header, the content-length took precedence and the remainder of the request body was interpreted as a pipelined request.