An issue in croogo v.3.0.2 allows an attacker to perform Host header injection via the feed.rss component.
2025-04-18T15:15:53.197
2025-05-28T15:51:17.290
Analyzed
[email protected]
CVSSv3.1: 9.1 (CRITICAL)