CVE-2020-24275: Swoole

Medium severity, CVSS 6.5. EPSS: 0.8% chance of exploitation in the next 30 days.

A HTTP response header injection vulnerability in Swoole v4.5.2 allows attackers to execute arbitrary code via supplying a crafted URL.

Affected products

  • Swoole Swoole: version 4.5.2 only

Published 2023-07-20. Last modified 2026-06-17.