CVE-2022-39957

The OWASP ModSecurity Core Rule Set (CRS) is affected by a response body bypass. A client can issue an HTTP Accept header field containing an optional “charset” parameter in order to receive the res…

https://t.co/rf4sVgz3fg