web-cache-poisoning

Web Exploitation

Web Cache Poisoning: Weaponizing Unkeyed Input

How attackers turn unkeyed inputs like X-Forwarded-Host into stored XSS via shared caches, and how to defend.