[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
Vulnerability report: third party site credentials leak when redirect in
From: |
王念 |
Subject: |
Vulnerability report: third party site credentials leak when redirect in wget |
Date: |
Fri, 10 Jun 2022 13:14:26 +0800 |
Hello everyone, We found a flaw that wget does not properly filter the request
header when 302 redirecting. It will also send cookie and Authorization (such
as any other header) that not reserved of t
[Prev in Thread] |
Current Thread |
[Next in Thread] |
- Vulnerability report: third party site credentials leak when redirect in wget,
王念 <=