Description
In Ktor through 1.2.6, the client resends data from the HTTP Authorization header to a redirect location.
Remediation
References
https://github.com/ktorio/ktor/issues/1467
Related Vulnerabilities
CVE-2022-45210 Vulnerability in maven package org.jeecgframework.boot:jeecg-module-system
CVE-2023-22467 Vulnerability in maven package org.webjars.npm:luxon
CVE-2020-7788 Vulnerability in npm package ini
CVE-2022-3952 Vulnerability in maven package com.manydesigns:portofino-microservice-launcher
CVE-2023-31580 Vulnerability in maven package com.networknt:light-oauth2