Description
In Ktor through 1.2.6, the client resends data from the HTTP Authorization header to a redirect location.
Remediation
References
https://github.com/ktorio/ktor/issues/1467
Related Vulnerabilities
CVE-2020-8127 Vulnerability in maven package org.webjars.npm:reveal.js
CVE-2011-1026 Vulnerability in maven package org.apache.archiva:archiva
CVE-2017-16016 Vulnerability in npm package sanitize-html
CVE-2017-12617 Vulnerability in maven package org.apache.tomcat:tomcat-catalina
CVE-2023-33202 Vulnerability in maven package org.bouncycastle:bc-fips-debug