6.5
CVSSv3

CVE-2022-31151

Published: 21/07/2022 Updated: 29/09/2022
CVSS v3 Base Score: 6.5 | Impact Score: 2.5 | Exploitability Score: 3.9
VMScore: 0

Vulnerability Summary

Authorization headers are cleared on cross-origin redirect. However, cookie headers which are sensitive headers and are official headers found in the spec, remain uncleared. There are active users using cookie headers in undici. This may lead to accidental leakage of cookie to a 3rd-party site or a malicious attacker who can control the redirection target (ie. an open redirector) to leak the cookie to the 3rd party site. This was patched in v5.7.1. By default, this vulnerability is not exploitable. Do not enable redirections, i.e. `maxRedirections: 0` (the default).

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

nodejs undici

Vendor Advisories

Synopsis Critical: Red Hat Advanced Cluster Management 246 security update and bug fixes Type/Severity Security Advisory: Critical Topic Red Hat Advanced Cluster Management for Kubernetes 246 GeneralAvailability release images, which fix bugs and update container imagesRed Hat Product Security has rated this update as having a security i ...
Authorization headers are cleared on cross-origin redirect However, cookie headers which are sensitive headers and are official headers found in the spec, remain uncleared There are active users using cookie headers in undici This may lead to accidental leakage of cookie to a 3rd-party site or a malicious attacker who can control the redirection ...