NA

CVE-2024-30260

Published: 04/04/2024 Updated: 19/04/2024

Vulnerability Summary

Description<!---->A flaw was found in the nodejs-undici package. Proxy-Authorization headers are not cleared on cross-origin redirects, which can allow for the exposure of sensitive data or allow an malicious user to capture the persistent proxy-authentication header.A flaw was found in the nodejs-undici package. Proxy-Authorization headers are not cleared on cross-origin redirects, which can allow for the exposure of sensitive data or allow an malicious user to capture the persistent proxy-authentication header.

Vendor Advisories

Description<!---->A flaw was found in the nodejs-undici package Proxy-Authorization headers are not cleared on cross-origin redirects, which can allow for the exposure of sensitive data or allow an attacker to capture the persistent proxy-authentication headerA flaw was found in the nodejs-undici package Proxy-Authorization headers are not clear ...