Description
In Ktor through 1.2.6, the client resends data from the HTTP Authorization header to a redirect location.
Remediation
References
https://github.com/ktorio/ktor/issues/1467
Related Vulnerabilities
CVE-2023-41887 Vulnerability in maven package org.openrefine:database
CVE-2020-7606 Vulnerability in npm package docker-compose-remote-api
CVE-2020-36282 Vulnerability in maven package com.rabbitmq.jms:rabbitmq-jms
CVE-2018-3737 Vulnerability in maven package org.webjars.npm:sshpk
CVE-2022-25645 Vulnerability in maven package org.webjars.npm:dset