The Burp Suite User Forum was discontinued on the 1st November 2024.

Burp Suite User Forum

For support requests, go to the Support Center. To discuss with other Burp users, head to our Discord page.

SUPPORT CENTER DISCORD

X-Forwarded-Host Web Cache Poisoning

Simon | Last updated: Apr 10, 2020 04:54PM UTC

Hi, Lab: Web cache poisoning to exploit a DOM vulnerability via a cache with strict cacheability criteria I've noticed that when I add the X-Forwarded-Host in the header and send the request, I don't get a response back. I get a response back if I remove the X-Forwarded-Host and leave the cache buster. Param Miner is turned off. Any ideas? Thank you

Simon | Last updated: Apr 10, 2020 10:24PM UTC

Sorted!

Simon | Last updated: Apr 12, 2020 08:29PM UTC