Related Vulnerabilities: CVE-2021-31879  

GNU Wget through 1.21.1 does not omit the Authorization header upon a redirect to a different origin, a related issue to CVE-2018-1000007.

Severity Medium

Remote Yes

Type Information disclosure

Description

GNU Wget through 1.21.1 does not omit the Authorization header upon a redirect to a different origin, a related issue to CVE-2018-1000007.

AVG-1892 wget 1.21.1-1 Medium Vulnerable

https://mail.gnu.org/archive/html/bug-wget/2021-02/msg00002.html