GNU Wget before 1.19.5 is prone to a cookie injection vulnerability in the resp_new function in http.c via a \r\n sequence in a continuation line.
- https://sintonen.fi/advisories/gnu-wget-cookie-injection.txt
- https://www.exploit-db.com/exploits/44601/
No PoCs found on GitHub currently.