This site is the archived OWASP Foundation Wiki and is no longer accepting Account Requests.
To view the new OWASP Foundation website, please visit https://owasp.org

Talk:HTTP Response Splitting

From OWASP
Jump to: navigation, search

I think the example code isn't actually vulnerable. The libraries appear to automatically escape the input.