CRLF injection on https://buildbot.mariadb.org
Discovered by mik317 on Mariadb

This issue took 3 Days and 14 hours to triage and 13 Days and 23 hours to resolve once triaged.



A CRLF (new line) injection vulnerability has been discovered in the Buildbot.net software and reported to us. We have forwarded this to the Buildbot developers which coordinated a fix release and public disclosure. This vulnerability has been assigned <a href="/redirect?signature=e6a359e79f8382af8873997049cb095d31feb5d5&amp;url=https%3A%2F%2Fcve.mitre.org%2Fcgi-bin%2Fcvename.cgi%3Fname%3DCVE-2019-7313" target="_blank" rel="nofollow noopener noreferrer"><span>CVE-2019-7313</span><i class="icon-external-link"></i></a>. More details in the <a href="/redirect?signature=4126c2074d69caaf03915a740a8a0ba79ef315db&amp;url=https%3A%2F%2Fgithub.com%2Fbuildbot%2Fbuildbot%2Fwiki%2FCRLF-injection-in-Buildbot-login-and-logout-redirect-code" target="_blank" rel="nofollow noopener noreferrer"><span>advisory</span><i class="icon-external-link"></i></a> text.