Description
In Ktor through 1.2.6, the client resends data from the HTTP Authorization header to a redirect location.
Remediation
References
https://github.com/ktorio/ktor/issues/1467
Related Vulnerabilities
CVE-2021-23337 Vulnerability in maven package org.fujion.webjars:lodash
CVE-2021-41182 Vulnerability in maven package org.webjars:jquery-ui
CVE-2022-36914 Vulnerability in maven package org.jenkins-ci.plugins:files-found-trigger
CVE-2020-13929 Vulnerability in maven package org.apache.zeppelin:zeppelin