You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
The host header present in a given request can be changed via the client who is initiating the request, which will allow the request to be redirected to the now changed location header which takes its value from the host header (i.e. https://localhost/ can be redirected to https://localhost1/carbon after the host header is set to localhost1). The host header needs to be overridden from a configuration level in order to prevent this.
Steps to Reproduce
N/A
Version
4.1.0
Environment Details (with versions)
No response
The text was updated successfully, but these errors were encountered:
Description
The host header present in a given request can be changed via the client who is initiating the request, which will allow the request to be redirected to the now changed location header which takes its value from the host header (i.e. https://localhost/ can be redirected to https://localhost1/carbon after the host header is set to localhost1). The host header needs to be overridden from a configuration level in order to prevent this.
Steps to Reproduce
N/A
Version
4.1.0
Environment Details (with versions)
No response
The text was updated successfully, but these errors were encountered: