Description
In Ktor through 1.2.6, the client resends data from the HTTP Authorization header to a redirect location.
Remediation
References
https://github.com/ktorio/ktor/issues/1467
Related Vulnerabilities
CVE-2020-28469 Vulnerability in maven package org.webjars.bowergithub.es128:glob-parent
CVE-2020-13951 Vulnerability in maven package org.apache.openmeetings:openmeetings-server
CVE-2022-45598 Vulnerability in npm package @joplin/renderer
CVE-2020-24660 Vulnerability in npm package node-lemonldap-ng-handler